Recent Security News

  • CISA pushes federal agencies to patch Citrix RCE within a week

    January 17, 2024 at 01:36PM CISA has directed U.S. federal agencies to secure their systems against recently patched Citrix NetScaler and Google Chrome zero-days. The urgency is due to active exploitation of the vulnerabilities. The agencies have specific timelines for patching, with the most critical CVE-2023-6548 vulnerability requiring resolution within a week. CISA urges all…

    Read More

  • Microsoft: Iranian APT Impersonating Prominent Journalist in Clever Spear-Phishing Attacks

    January 17, 2024 at 01:30PM Microsoft has uncovered a sophisticated spear-phishing campaign by the ‘Mint Sandstorm’ hackers, associated with Iran’s military intelligence. The attacks target high-profile individuals in Middle Eastern affairs, using impersonation of journalists and benign emails to build trust before delivering malicious content. The hackers utilize compromised accounts to send phishing lures and…

    Read More

  • Swiss Govt Websites Hit by Pro-Russia Hackers After Zelensky Visit

    January 17, 2024 at 01:30PM Pro-Russian group “NoName” conducted a cyberattack on Swiss government websites, citing President Zelensky’s Davos visit. National Cyber Security Centre promptly restored access, as expected security measures were in place. The attack used distributed denial-of-service, impacting ministries and offices, but not the main portal. “NoName” group previously targeted Switzerland after Zelensky’s…

    Read More

  • CISA: AWS, Microsoft 365 Accounts Under Active ‘Androxgh0st’ Attack

    January 17, 2024 at 01:21PM The FBI and CISA have issued an alert about a malware campaign targeting Apache webservers and websites using the Laravel Web application framework. The campaign aims to steal credentials for high-profile applications such as AWS, Microsoft 365, Twilio, and SendGrid. The threat actors use a known malware called “Androxgh0st” to…

    Read More

  • iShutdown scripts can help detect iOS spyware on your iPhone

    January 17, 2024 at 01:07PM Security researchers discovered a method to detect spyware infections like Pegasus, Reign, and Predator on compromised Apple mobile devices by analyzing the Shutdown.log file. Kaspersky released Python scripts to automate this process and recommend regular device restarts to capture signs of infection. The method proved reliable in identifying spyware-related behaviors…

    Read More