How DDoS attacks are taking down even the largest tech companies

November 16, 2023 at 10:22AM DDoS attacks have been increasing, particularly targeting major cloud platforms like Microsoft. These attacks aim to disrupt online services by overwhelming them with excessive traffic. The recent attacks on Microsoft employed Layer 7 DDoS attacks, which can cause significant damage with fewer resources. Anonymous Sudan, a cyber threat group, was … Read more

Illumio Delivers the Most Complete Zero-Trust Segmentation Platform With the Addition of CloudSecure

November 14, 2023 at 11:11PM Illumio has expanded its Zero Trust Segmentation Platform with Illumio CloudSecure, allowing organizations to reduce the impact of cyberattacks and increase cyber resilience in hybrid and multi-cloud environments. The tool provides visibility and control of connections between dynamic applications and workloads, and stops unauthorized movement automatically. Illumio CloudSecure is effective, … Read more

Russian national pleads guilty to building now-dismantled IPStorm proxy botnet

November 14, 2023 at 06:31PM Russian and Moldovan national Sergei Makinin has been arrested in Florida for operating a botnet called IPStorm. Makinin admitted to violating US law by intentionally causing damage to protected systems. The botnet used the InterPlanetary File System (IPFS) to hide its activities and allow infected machines to be used as … Read more

NCSC says cyber-readiness of UK’s critical infrastructure isn’t up to scratch

November 14, 2023 at 02:08AM The UK’s National Cyber Security Centre (NCSC) has expressed concerns about the increasing threat to the nation’s critical national infrastructure (CNI). In its annual review, the NCSC admitted that cybersecurity resilience in critical areas is not where it needs to be and highlighted the evolving threat landscape. Nation states like … Read more

Iranian hackers launch malware attacks on Israel’s tech sector

November 12, 2023 at 10:37AM Imperial Kitten, a threat actor linked to the Iranian Armed Forces, has been conducting cyberattacks since 2017. Recently, they targeted transportation, logistics, and technology firms using phishing emails with malicious attachments. They gained network access, moved laterally, and communicated with a command and control server using custom malware. Previously, they … Read more

Microsoft: Iran’s Cyberattacks on Israel Exaggerated & Fabricated

November 10, 2023 at 11:23AM Hacktivists with pro-Iranian affiliations have falsely claimed the success of cyberattacks against Israel in its conflict with Hamas, according to Microsoft. The tech giant states that allegations of pre-planned cyberattacks by Iranian state-sponsored attackers timed with Hamas’ terror attack on October 7th are also untrue. Microsoft’s Threat Intelligence Center reports … Read more

Worldwide Hacktivists Take Sides Over Gaza, With Little to Show for It

November 9, 2023 at 10:59AM Hacktivists from various regions are claiming cyberattacks in support of Palestine or Israel during the Gaza war. However, researchers at SecurityScorecard have found little evidence to support these claims. Hacktivist operations have also been reported in Muslim-majority countries, with some claiming data breaches and others demonstrating access to industrial infrastructure … Read more

MGM and Caesars Attacks Highlight Social Engineering Risks

November 7, 2023 at 12:23PM The recent cyberattacks on MGM Resorts International and Caesars Entertainment highlight the impact of data breaches on organizations. The breach was orchestrated through social engineering tactics using information obtained from LinkedIn. The root cause of such breaches is the continued reliance on legacy sign-in credentials, which are easily compromised. In … Read more

Virtual Kidnapping: AI Tools Are Enabling IRL Extortion Scams

November 6, 2023 at 04:43PM Researchers at Trend Micro are warning of a new trend called “virtual kidnapping” which combines cyber compromise, social media intel, and AI voice cloning software to convince targets that their loved ones have been kidnapped. Attackers are increasingly leveraging advanced AI technology to make these attacks more convincing. Traditional security … Read more

Okta breach affected 134 orgs, ‘or less than 1%’ of customers, company admits

November 6, 2023 at 09:11AM Okta has confirmed that its October breach resulted in the compromise of files belonging to 134 customers, which is less than 1 percent of their customer base. Among the affected customers are 1Password, BeyondTrust, and Cloudflare. The breach involved an employee signing into their personal Google account on a company-managed … Read more