Wednesday, September 11, 2024

Developers Beware: Lazarus Group Uses Fake Coding Tests to Spread Malware

Cybersecurity researchers have uncovered a new set of malicious Python packages that target software developers under the guise of coding assessments.
"The new samples were tracked to GitHub projects that have been linked to previous, targeted attacks in which developers are lured using fake job interviews," ReversingLabs researcher Karlo Zanki said.
The activity has been assessed to be part of


https://thehackernews.com/2024/09/developers-beware-lazarus-group-uses.html?utm_source=dlvr.it&utm_medium=blogger

CosmicBeetle Deploys Custom ScRansom Ransomware, Partnering with RansomHub

The threat actor known as CosmicBeetle has debuted a new custom ransomware strain called ScRansom in attacks targeting small- and medium-sized businesses (SMBs) in Europe, Asia, Africa, and South America, while also likely working as an affiliate for RansomHub.
"CosmicBeetle replaced its previously deployed ransomware, Scarab, with ScRansom, which is continually improved," ESET researcher Jakub


https://thehackernews.com/2024/09/cosmicbeetle-deploys-custom-scransom.html?utm_source=dlvr.it&utm_medium=blogger

Tuesday, September 10, 2024

What is Border Gateway Protocol (BGP)?

Border Gateway Protocol (BGP) is a critical component of the modern internet, enabling data routing between different networks, known as autonomous systems (AS). As the primary protocol for exchanging routing information across the Internet, BGP ensures that data packets efficiently travel from source to destination. This article delves into BGP’s characteristics, functionality, importance, types, and […]


The post What is Border Gateway Protocol (BGP)? appeared first on Cyber Security News.


https://cybersecuritynews.com/what-is-border-gateway-protocol-bgp/?utm_source=dlvr.it&utm_medium=blogger

Small Business, Big Threats: INE Security Launches Initiative to Train SMBs to Close a Critical Skills Gap

As cyber threats grow, small to medium-sized businesses (SMBs) are disproportionately targeted. According to the recent Hiscox annual cyber readiness report, 41% of SMBs in the US fell victim to a cyberattack in 2023, a figure that has nearly doubled since 2021. INE Security, a global leader in cybersecurity training and certifications, recognizes this as […]


The post Small Business, Big Threats: INE Security Launches Initiative to Train SMBs to Close a Critical Skills Gap appeared first on Cyber Security News.


https://cybersecuritynews.com/ine-security-launches-initiative-to-train-smbs-to-close-a-critical-skills-gap/?utm_source=dlvr.it&utm_medium=blogger

New PIXHELL Attack Exploits Screen Noise to Exfiltrates Data from Air-Gapped Computers

A new side-channel attack dubbed PIXHELL could be abused to target air-gapped computers by breaching the "audio gap" and exfiltrating sensitive information by taking advantage of the noise generated by the pixels on the screen.
"Malware in the air-gap and audio-gap computers generates crafted pixel patterns that produce noise in the frequency range of 0 - 22 kHz," Dr. Mordechai Guri, the head of


https://thehackernews.com/2024/09/new-pixhell-attack-exploits-screen.html?utm_source=dlvr.it&utm_medium=blogger

CISA Warns of Three Vulnerabilities That Are Actively Exploited in the Wild

The Cybersecurity and Infrastructure Security Agency (CISA) has added three new vulnerabilities to its Known Exploited Vulnerabilities Catalog, warning that threat actors are actively exploiting them in the wild. The vulnerabilities affect various products and could lead to serious consequences such as remote code execution and privilege escalation. ImageMagick Improper Input Validation Vulnerability (CVE-2016-3714) ImageMagick, […]


The post CISA Warns of Three Vulnerabilities That Are Actively Exploited in the Wild appeared first on Cyber Security News.


https://cybersecuritynews.com/cisa-warns-of-three-vulnerabilities/?utm_source=dlvr.it&utm_medium=blogger

New RAMBO Attack Uses RAM Radio Signals to Steal Data from Air-Gapped Networks

A novel side-channel attack has been found to leverage radio signals emanated by a device's random access memory (RAM) as a data exfiltration mechanism, posing a threat to air-gapped networks.
The technique has been codenamed RAMBO by Dr. Mordechai Guri, the head of the Offensive Cyber Research Lab in the Department of Software and Information Systems Engineering at the Ben Gurion University of


https://thehackernews.com/2024/09/new-rambo-attack-uses-ram-radio-signals.html?utm_source=dlvr.it&utm_medium=blogger

Monday, September 9, 2024

Understand How Threat Intelligence Benefits for a Business

As a business owner, you’ve likely invested in various security tools such as SIEMs, antivirus software, and IDS/IPS systems. You may also have a dedicated cybersecurity team, like a SOC (Security Operations Center) or a DFIR (Digital Forensics and Incident Response) team. However, are your teams equipped to go beyond merely reacting to cybersecurity incidents? […]


The post Understand How Threat Intelligence Benefits for a Business appeared first on Cyber Security News.


https://cybersecuritynews.com/understand-how-threat-intelligence-benefits-for-a-business/?utm_source=dlvr.it&utm_medium=blogger

Progress Software Issues Patch for Vulnerability in LoadMaster and MT Hypervisor

Progress Software has released security updates for a maximum-severity flaw in LoadMaster and Multi-Tenant (MT) hypervisor that could result in the execution of arbitrary operating system commands.
Tracked as CVE-2024-7591 (CVSS score: 10.0), the vulnerability has been described as an improper input validation bug that results in OS command injection.
"It is possible for unauthenticated, remote


https://thehackernews.com/2024/09/progress-software-issues-patch-for.html?utm_source=dlvr.it&utm_medium=blogger

Beware Of Malicious Chrome Extension That Delivers Weaponized ZIP Archive

Malicious Chrome extensions pose significant risks to users, as they can compromise personal information, inject unwanted promotions, and even manipulate web traffic as well. There are several malicious extensions that remain undetected for extended periods, and this primarily happens due to inadequate moderation by the Chrome Web Store. eSentire’s Threat Response Unit (TRU) researchers recently […]


The post Beware Of Malicious Chrome Extension That Delivers Weaponized ZIP Archive appeared first on Cyber Security News.


https://cybersecuritynews.com/malicious-chrome-extension-weaponized-zip/?utm_source=dlvr.it&utm_medium=blogger