Papua New Guinea Sets High Bar in Data Security

July 1, 2024 at 07:08PM In a time of sophisticated cyber threats, protecting sensitive data is standard. Papua New Guinea (PNG) stands out by embracing proactive cybersecurity measures, including a comprehensive National Data Protection and Governance Policy. PNG’s strategy emphasizes responsible data sharing, establishes clear guidelines, and aligns with international standards, demonstrating its commitment to … Read more

Cybersecurity Veteran Kevin Mandia Named General Partner of Ballistic Ventures

June 28, 2024 at 05:22PM Ballistic Ventures, a cybersecurity-focused venture capital firm, has named co-founder Kevin Mandia as General Partner. Mandia, a cybersecurity expert with an impressive track record, has held leadership roles at prominent firms and has been appointed to prestigious advisory committees. His transition to General Partner follows the firm’s successful fundraising and … Read more

Is Defense Winning? A Look at Decades of Playing Catch Up

June 27, 2024 at 01:20PM At Black Hat USA 2024, Jason Healey will present “Is Defense Winning?” examining the perpetual struggle between cybersecurity defenders and attackers. He emphasizes the need for measurable indicators to gauge defensive progress, suggesting changes akin to climate change metrics. He advocates leveraging systemic changes and existing reports to establish defensibility … Read more

‘Snowblind’ Tampering Technique May Drive Android Users Adrift

June 26, 2024 at 09:06AM “Snowblind,” a new malware targeting Southeast Asian banking apps, exploits the Linux security feature “seccomp” to isolate applications from detecting tampering, thwarting existing anti-tampering measures. This forces developers and security experts to adapt and find new strategies to counter such attacks, as traditional defense mechanisms become less effective against this … Read more

Ease the Burden with AI-Driven Threat Intelligence Reporting

June 24, 2024 at 07:30AM Cybersixgill’s threat experts highlight critical threats and the challenges faced by cybersecurity professionals in managing increasing workloads amidst limited budgets, inadequate staffing, and growing attack surfaces. The shortage of skilled professionals and the time-consuming nature of producing reports are major obstacles. Cybersixgill’s IQ Report Generator offers a solution, providing rapid, … Read more

Ratel RAT targets outdated Android phones in ransomware attacks

June 22, 2024 at 03:14PM The ‘Ratel RAT’ is an open-source Android malware widely used by cybercriminals to target outdated devices, often using ransomware to demand payment on Telegram. Check Point researchers detected over 120 campaigns using Rafel RAT, with high-profile organizations being targeted, particularly in the United States, China, and Indonesia. It’s crucial to … Read more

DDoS Attack Targets Poland’s UEFA Euro Opening Match

June 20, 2024 at 12:41PM Cyber attackers targeted Polish public television’s online broadcast of the UEFA Euro 2024 soccer championship tournament’s opening match. TVP experienced a distributed denial of service (DDoS) attack, but it was quickly mitigated. Speculation arose about whether the massive traffic was accidental or a deliberate ploy, with the Russian Federation being … Read more

New BadSpace Backdoor Deployed in Drive-By Attacks

June 18, 2024 at 12:36PM A new backdoor named BadSpace uses a multi-stage attack that involves infected WordPress sites. It is distributed similarly to the SocGholish malware and is associated with the cybercrime group Evil Corp. BadSpace’s delivery chain starts with an infected website, deploying the backdoor through a fake browser update notification and JavaScript … Read more

Widespread Vishing Effort Impersonates CISA Staff

June 14, 2024 at 10:09AM The US Cybersecurity and Infrastructure Security Agency (CISA) warned about a rise in impersonation scams where malicious actors pretend to be CISA representatives and request cash or cryptocurrency transfers. Individuals are advised to deny the request, report the incident to law enforcement, and contact CISA. Experts emphasize the need for … Read more

AI Chatbot Fools Scammers & Scores Money-Laundering Intel

June 13, 2024 at 02:41PM Conversational AI has been used to engage with scammers, providing insight into cybercriminal operations and extracting information about their fraud methods and infrastructure. Netcraft’s ChatGPT-based chatbot was successful in collecting bank account details from fraudsters, demonstrating the potential of AI in countering cybercrime and creating a more proactive cyber defense. … Read more