Russia’s APT28 Exploited Windows Print Spooler Flaw to Deploy ‘GooseEgg’ Malware

April 23, 2024 at 01:27AM APT28, also known as Fancy Bear and Forest Blizzard, perpetrated cyber attacks using GooseEgg malware exploiting a Windows Print Spooler flaw, targeting organizations in Ukraine, Western Europe, and North America. The group, affiliated with Russia’s military intelligence agency, has a history of using public exploits for intelligence gathering. IBM X-Force … Read more

National Security Agency Announces Dave Luber As Director of Cybersecurity

April 10, 2024 at 05:22PM Dave Luber became the NSA’s new Director of Cybersecurity on April 1, taking over from Rob Joyce. Luber looks forward to continuing the agency’s work in preventing cyber threats and building partnerships. With over 37 years of experience, including roles at NSA and USCYBERCOM, Luber is uniquely qualified for this … Read more

NSA Appoints Dave Luber as Cybersecurity Director 

April 8, 2024 at 06:30AM Dave Luber has been named the new cybersecurity director of the NSA, succeeding Rob Joyce who retired on March 31. Luber, with over 30 years of experience in various cybersecurity roles, will lead the agency’s efforts to combat cyber threats and work with partners across the community. Key takeaways from … Read more

CISA shares critical infrastructure defense tips against Chinese hackers

March 19, 2024 at 04:25PM U.S. and partner cybersecurity agencies issued warnings against the Chinese hacking group, Volt Typhoon, targeting critical infrastructure. They provided defense tips and urged infrastructure leaders to empower their cybersecurity teams. The group has breached U.S. critical infrastructure, posing risks of disruption during military conflicts. Additionally, FBI disrupted the group’s botnet. … Read more

In Other News: Google AI Hacking, Font Vulnerabilities, IBM Training Facility

March 8, 2024 at 09:57AM SecurityWeek’s cybersecurity news roundup offers a concise collection of important stories that may have been overlooked. This week’s highlights include IBM’s launch of a new cyber response training facility, Google’s termination of accounts involved in influence operations, updates on Microsoft’s Secure Future Initiative, and cybersecurity resources released by CISA and … Read more

10 Essential Processes for Reducing the Top 11 Cloud Risks

March 6, 2024 at 10:02AM The cloud security landscape continues to evolve, with the Cloud Security Alliance (CSA) highlighting 11 key threats and recommended defenses. Issues like misconfigurations and inadequate change control continue to challenge organizations. Effective strategies include building a robust identity program and investing in threat hunting, emphasizing the need for proactive measures … Read more

NSA Cybersecurity Director Rob Joyce to Retire

February 22, 2024 at 04:52PM Rob Joyce, US director of cybersecurity and deputy national manager of national security systems, is retiring from the NSA after 34 years. He served as the director of the Cybersecurity Directorate in 2021 and held various positions on the National Security Council. David Luber, the current deputy director of the … Read more

NSA Announces Retirement of Cybersecurity Director Rob Joyce

February 21, 2024 at 06:45AM Rob Joyce, highly respected in cybersecurity, is leaving his role as NSA’s cybersecurity director on March 31. His focus has been on preventing threats to national security systems and infrastructure, and expanding partnerships. Deputy director David Luber will replace him, with General Haugh praising Joyce’s leadership and vision for the … Read more

General Timothy Haugh Takes Lead of NSA and Cyber Command

February 4, 2024 at 06:54PM General Timothy D. Haugh assumes leadership of USCYBERCOM and NSA/CSS from General Paul M. Nakasone. President Joe Biden appointed Haugh in May 2023. Impressed by the workforce’s accomplishments, Haugh expressed confidence in achieving their goals. Deputy Secretary of Defense, Kathleen Hicks acknowledged Fort Meade’s crucial missions. General Nakasone is proud … Read more

NSA Admits Secretly Buying Your Internet Browsing Data without Warrants

January 29, 2024 at 02:15AM The U.S. National Security Agency (NSA) admits to purchasing internet browsing records from data brokers without court orders, raising concerns about Americans’ privacy. Senator Wyden criticizes this practice and emphasizes the potential privacy risks, especially relating to sensitive topics like mental health or domestic abuse. The revelation highlights a broader … Read more