New Research Suggests Africa Is Being Used As a ‘Testing Ground’ for Nation State Cyber Warfare

April 26, 2024 at 05:44PM Performanta, a multinational cybersecurity firm, has identified a trend of developing countries being targeted by nation-state actors using ransomware-as-a-service. The CEO emphasizes the increasing threat in Africa and the impact on global organizations. The report highlights the prevalence of cyber attacks in South Africa and a rise in financial trojans … Read more

Registrars can now block all domains that resemble brand names

February 28, 2024 at 05:49AM Registrars like GoDaddy and 101domain offer the GlobalBlock solution to reserve domain space and protect trademarks by preventing registration of similar and misspelled domains. This includes homograph attacks using visually similar characters. However, concerns arise regarding potential limitations on free speech and domain hoarding. Prices start at $5,999 annually at … Read more

Future of America’s Cyber Safety Review Board hangs in balance amid calls for rethink

January 18, 2024 at 01:32PM The US is contemplating legislation to make the Cyber Safety Review Board (CSRB) a permanent fixture in cybersecurity. Experts emphasize the need for substantial changes in its organization to ensure detailed and independent reports. Discussion also arose on granting the board subpoena powers, with mixed opinions from industry figures and … Read more

Municipalities Face a Constant Battle as Ransomware Snowballs

December 8, 2023 at 03:11PM A fresh wave of ransomware attacks is sweeping U.S. municipalities, including Dallas, which experienced a cyberattack by the Play ransomware gang. This trend extends globally, affecting entities in Germany, Hungary, and Slovakia. Municipalities are ill-equipped to defend against such attacks, facing understaffing, underfunding, and inadequate cybersecurity training, highlighting the urgent … Read more

WordPress Bug ‘Patch’ Installs Backdoor for Full Site Takeover

December 5, 2023 at 11:21AM Cybercriminals are circulating a bogus WordPress security email, claiming to resolve a fake RCE vulnerability with a “patch” that is actually a backdoor for site hijacking. No infections are reported yet, but users are urged not to install the offered plugin and to be wary of phishing attempts. Meeting Takeaways: … Read more

Apple fixes two new iOS zero-days in emergency updates

November 30, 2023 at 02:49PM Apple has patched 20 zero-day vulnerabilities in 2023, recently addressing two allowing attackers to exploit iPhones, iPads, and Macs via WebKit. The flaws enabled data access and code execution. Updates were issued for various devices and macOS versions. Google TAG identified the exploits, which historically targeted high-risk individuals. Clear Takeaways … Read more

CISA to Congress: US Under Threat of Chemical Attacks

November 28, 2023 at 05:50PM CISA has highlighted a national security risk following the expiration of the CFATS program, which regulated security at chemical facilities to prevent terrorism. With CFATS lapsed since July, CISA notes increased danger as facilities may acquire dangerous chemicals without adequate security measures, and potential terrorist ties may go unchecked. Meeting … Read more

Norton Boosts Security and Privacy With Enhanced Password Manager and AntiTrack

October 19, 2023 at 05:16PM Norton, a consumer Cyber Safety brand, has announced new features for Norton Password Manager and Norton AntiTrack. Norton Password Manager now offers a premium password management experience at no cost, with improved security and convenience. Norton AntiTrack includes a new Private Email feature to protect online privacy by masking personal … Read more