Ransomware Gangs Seek Pen Testers to Boost Quality

November 29, 2024 at 09:03AM Cybercriminals are increasingly seeking skilled cybersecurity professionals to enhance their malware and ransomware operations, reflecting a shift towards structured, corporate-like organizations. This trend is driven by the need to secure their tools against law enforcement crackdowns and technological advances, prompting a rise in new ransomware groups and job opportunities in … Read more

Ransom gang claims attack on NHS Alder Hey Children’s Hospital

November 29, 2024 at 07:36AM A ransomware attack has targeted Alder Hey Children’s Hospital and Liverpool Heart and Chest Hospital, with the gang INC Ransom claiming to have stolen and leaked sensitive patient data. The incident is separate from an ongoing cyber issue at Wirral University Teaching Hospital, and Alder Hey continues to operate normally. … Read more

Protecting Tomorrow’s World: Shaping the Cyber-Physical Future

November 29, 2024 at 06:21AM The webinar “Shaping the Cyber-Physical Future: Trends, Challenges, and Opportunities for 2025” examined the integration of digital and physical realms, addressing emerging technologies, security concerns, and strategies for businesses. Key trends impact the evolving threat landscape, emphasizing the need for robust security measures, proactive threat detection, and comprehensive cyber-physical preparedness … Read more

Fighting cybercrime with actionable knowledge

November 29, 2024 at 04:28AM Cybercrime is evolving, making continuous training essential for cybersecurity professionals. Celebrating 35 years, the SANS Institute offers over 85 courses and 240,000 GIAC certifications globally, emphasizing updated curriculums. New courses in 2025 will cover cybercrime intelligence and Linux incident response, ensuring professionals stay equipped to tackle emerging threats. ### Meeting … Read more

Hackers exploit ProjectSend flaw to backdoor exposed servers

November 27, 2024 at 04:04PM A critical authentication bypass flaw (CVE-2024-11680) in ProjectSend allows attackers to exploit vulnerable versions to upload webshells and gain remote access. Despite a fix released on May 16, 2023, 99% of users remain vulnerable. Active exploitation has surged since September 2024, necessitating urgent updates to version r1750. ### Meeting Takeaways … Read more

Researchers discover first UEFI bootkit malware for Linux

November 27, 2024 at 12:43PM A new UEFI bootkit designed to target Linux systems has been identified, indicating a significant change in the landscape of stealthy and difficult-to-remove bootkit threats, which have primarily been aimed at Windows platforms until now. **Meeting Takeaways:** – A new UEFI bootkit has been identified that specifically targets Linux systems. … Read more

First-ever UEFI bootkit for Linux in the works, experts say

November 27, 2024 at 10:36AM Security researchers have discovered “Bootkitty,” the first UEFI bootkit targeting Linux, specifically some Ubuntu releases. Although currently a proof of concept, its existence indicates a shift in UEFI threat dynamics, dispelling the notion that such threats are exclusive to Windows, and highlights the need for future preparedness. ### Meeting Takeaways … Read more

Russian Script Kiddie Assembles Massive DDoS Botnet

November 27, 2024 at 09:08AM A hacker known as “Matrix” has created a DDoS botnet using publicly available malware tools, targeting IoT devices and enterprise servers. Operating on Telegram, Matrix offers various DDoS attack plans. Researchers emphasize the need for improved security practices to address vulnerabilities being exploited, particularly default credentials and unpatched systems. ### … Read more

Britain Putin up stronger AI defences to counter growing cyber threats

November 26, 2024 at 01:39AM The UK government has established a Laboratory for AI Security Research (LASR) to combat AI-driven cyber threats from Russia, emphasizing the need for resilience. The initiative includes £8.22 million in funding and collaboration with various national agencies, aiming to strengthen defenses against evolving cyber warfare tactics. ### Meeting Takeaways **Formation … Read more

BlackBasta Ransomware Brand Picks Up Where Conti Left Off

November 25, 2024 at 05:09PM Recent analysis shows that Russian-language ransomware groups are coordinating closely, sharing tactics and malware. BlackBasta has emerged as a key player, adapting to law enforcement crackdowns. Cybersecurity experts warn of potential cooperation between BlackBasta and the Russian state, emphasizing the need for enhanced defenses against evolving social engineering attacks. ### … Read more