Recent Security News

  • Is the vCISO Model Right for Your Organization?

    January 3, 2024 at 11:45PM The increasing complexity of cybersecurity and compliance has made it difficult for smaller businesses without a Chief Information Security Officer (CISO). As a solution, many are turning to virtual CISOs (vCISOs), who offer part-time outsourced security expertise to help fill the gap. This model is particularly beneficial for smaller businesses…

    Read More

  • Microsoft kills off Windows app installation from the web, again

    January 3, 2024 at 07:07PM Microsoft disabled the ms-appinstaller URI scheme due to its misuse by threat actors to install malware. The scheme was re-enabled on August 5, 2022, for some enterprise customers. However, its abuse allowed bypassing of Microsoft’s security checks. Microsoft is revoking abused code signing certificates and advising updates and policy changes…

    Read More

  • Mandiant’s account on X hacked to push cryptocurrency scam

    January 3, 2024 at 06:39PM Mandiant’s Twitter account was hijacked to facilitate a cryptocurrency scam, with the attacker impersonating the Phantom crypto wallet and promoting a fake website. The scam involved redirecting users to a phishing website to drain their cryptocurrency wallets. Mandiant acknowledged the incident and is working on a resolution, while the hacker…

    Read More

  • Russian Agents Hack Webcams to Guide Missile Attacks on Kyiv

    January 3, 2024 at 06:04PM The Security Service of Ukraine (SSU) has requested owners of webcams to cease broadcasts due to concerns about Russian intelligence using feeds for military reconnaissance. Russian agents hacked into webcams in Kyiv and used them for gathering air defense system information. The incidents highlight the vulnerability of IoT devices, prompting…

    Read More

  • Mandiant’s Twitter account hacked to push cryptocurrency scam

    January 3, 2024 at 05:52PM Today, Mandiant’s Twitter account was hijacked by threat actors, who impersonated the Phantom crypto wallet and shared a fraudulent cryptocurrency scam. Mandiant is aware of the incident and is working to resolve it. The attackers rebranded the account and promoted a fake website, posing a phishing threat. The original Mandiant…

    Read More