Next-Generation Attacks, Same Targets – How to Protect Your Users’ Identities

September 2, 2024 at 03:24AM FBI and CISA issued a joint advisory on new ransomware threats, describing a cybercriminal group and methods. The rapid growth in attacks calls for urgent adjustments in cyber defense strategies. Phishing-resistant MFA is crucial, with next-generation solutions and targeted deployments recommended. Organizations need to upgrade defense strategies to protect against … Read more

Hackers now use AppDomain Injection to drop CobaltStrike beacons

August 23, 2024 at 12:33PM A series of attacks since July 2024 have utilized a less common method known as AppDomain Manager Injection to exploit Microsoft .NET applications on Windows, posing a significant security threat. It seems like you’ve provided the introductory part of the meeting notes. How can I assist you with this information? … Read more

AutoCanada discloses cyberattack impacting internal IT systems

August 14, 2024 at 12:41PM AutoCanada was hit by a cyberattack last Sunday, impacting their internal IT systems and could cause disruptions. Based on the meeting notes provided, the clear takeaway is that AutoCanada was targeted by hackers in a cyberattack last Sunday, leading to an impact on the automobile dealership group’s internal IT systems. … Read more

DDoS Attacks Surge 46% in First Half of 2024, Gcore Report Reveals

August 14, 2024 at 03:09AM The Gcore Radar Report for H1 2024 shows a 46% increase in DDoS attacks compared to the previous year, with the gaming industry most affected. Attack power has risen, and application-layer attacks pose risks to financial services and e-commerce. The report emphasizes the need for worldwide collaboration to minimize DDoS … Read more

Why Hardsec Matters: From Protecting Critical Services to Enhancing Resilience

August 13, 2024 at 07:48AM Hardsec, short for “Hardware Security,” implements security defense using hardware logic and electronics, providing higher security assurance than software-only approaches. The rise in sophisticated cyber threats makes hardsec essential for highly regulated industries. Governments, including the US and UK, are mandating hardsec to safeguard critical systems and data, emphasizing its … Read more

In Other News: KnowBe4 Product Flaws, SEC Ends MOVEit Probe, SOCRadar Responds to Hacking Claims

August 9, 2024 at 09:30AM SecurityWeek’s cybersecurity news roundup offers a concise compilation of important stories. This week’s stories include Chinese hackers exploiting an old Windows vulnerability, the creation of a new maturity model for cyber threat intelligence, vulnerabilities in Johnson Controls’ exacqVision, a significant browser vulnerability, findings by CrowdStrike, and more notable updates from … Read more

FBI: BlackSuit ransomware behind over $500 million in ransom demands

August 8, 2024 at 10:51AM CISA and the FBI confirmed that the Royal ransomware rebranded to BlackSuit and has demanded over $500 million from victims since it emerged. BlackSuit gang has been active since September 2022 and is linked to attacks against over 350 organizations. They sought ransom payments in Bitcoin, with the largest demand … Read more

Fighting AI fire with AI fire

August 7, 2024 at 11:10AM Hackers are leveraging AI to launch sophisticated attacks on unprepared organizations. Employees use generative AI without IT consent, increasing vulnerability. Palo Alto Networks offers insights on leveraging AI to strengthen cyber defense in on-demand videos. CEO Nikesh Arora emphasizes AI’s benefits and risks, while other executives discuss real-time threat combat, … Read more

Former NSA Director Paul Nakasone Joins Ballistic Ventures as Strategic Advisor

August 5, 2024 at 09:42AM Retired U.S. Army General Paul M. Nakasone has joined cybersecurity-focused venture capital firm Ballistic Ventures as a Strategic Advisor. With extensive experience in national security and cyber operations, Nakasone will provide strategic support to the firm’s portfolio companies. His appointment emphasizes the importance of public-private partnerships in addressing cyber threats. … Read more

CISA Names Lisa Einstein as First Chief AI Officer

August 3, 2024 at 12:24PM CISA appointed Lisa Einstein as its first Chief Artificial Intelligence Officer. Einstein, who has been leading CISA’s AI efforts since 2023, served as the Executive Director of the CISA Cybersecurity Advisory Committee. CISA’s Director, Jen Easterly, expressed enthusiasm for Einstein’s new role, emphasizing the importance of responsible governance and secure … Read more