Threat actors stories
Cybersecurity firm Flare exposes the escalating threat posed by initial access brokers on Russian hacking forums.
EnSilica, a cybersecurity firm, integrates Post Quantum Cryptography (PQC) accelerators into its hardware range, strengthening encryption against prospective quantum computing threats.
In response to the increasing sophistication of cyber threats, the Australian Signals Directorate has revised its Essential Eight Maturity Model (E8MM), incorporating exposure management to proactively identify and prioritise risks, aiding businesses in effectively defending against cyber attacks.
Kaspersky study reveals an alarming increase in criminals discussing the use of AI tools for cyber exploitation on the dark web.
Rising use of QR codes and Large Language Models, automation in Managed Service Providers, booming AI spear phishing on the Dark Web, acceleration of AI-based 'vishing', and privacy threats from VR/MR headsets are predicted to shape the cybersecurity realm in 2024.
On Data Privacy Day, WatchGuard's VP of Identity, Carla Roncato, warns of the less conspicuous costs linked with 'free' services.
Acronis leads industry innovation with Integrated Advanced Security and EDR, targeting AI-driven cyberattacks and eliminating added costs.
Alarming underperformance in outsourced cybersecurity suppliers has increases breach risk to the UK's financial sector.
Less than 1% of security vulnerabilities created the highest risks to businesses in 2023, with 97 high-risk vulnerabilities exploited undetected, says Qualys Threat Research Unit report.
Guardio Labs uncovers a significant zero-day vulnerability in Opera's browser, threatening its 350 million active users; Opera's 'My-Flow' feature enables act of exploitation.
Logpoint's new Business Critical Security solution arms organisations with enhanced cloud security features for the SAP Business Technology Platform.
SentinelLabs details FBot, a distinct Python-based malware tool, focused on cloud and payment services. Unlike peers, FBot doesn't use Androxgh0st code.
iboss reveals a Government Protective DNS Module seeking to safeguard government agencies from DNS cyber vulnerabilities by leveraging the Cybersecurity and Infrastructure Security Agency's protective DNS service.
Cloudflare's reports highlight the spike in DDoS attacks amid conflict in Palestine and Israel, and the growing security threats posed by 'shadow APIs'.
The rise in remote working has increased shadow IT usage among employees, leading to 11% of all cyber incidents, according to Kaspersky.
The 2024 Cybersecurity Forecast report by Security and Identity Cloud uncovers future security trends, highlighting the potent role of generative AI in enhancing cybersecurity and impending threats from 'shadow AI'.
Google Cloud launches a secret discovery tool aimed at boosting organisation's security by detecting and monitoring plaintext credentials, part of its no-cost Sensitive Data Protection offering.
ESET Research has discovered a series of malicious Python projects distributed via PyPI repository, introducing a customised backdoor into Windows, Linux systems, and stealing personal data.
Identity security giant, Okta, gears up to acquire 2022-born Spera Security, set to boost its identity threat detection capabilities and enrich its customer base with advanced technology.
Whatever the goal of the attackers, e-tailers must remain one step ahead in detecting and stopping attackers from compromising their APIs.