News:

Lab - Just Launched!

Main Menu

Recent posts

#21
IT News / Practical Guidance For Securin...
Last post by ixsky -
Practical Guidance For Securing Your Software Supply Chain

The heightened regulatory and legal pressure on software-producing organizations to secure their supply chains and ensure the integrity of their software should come as no surprise. In the last several years, the software supply chain has become an increasingly attractive target for attackers who see opportunities to force-multiply their attacks by orders of magnitude. For example, look no

Source: Practical Guidance For Securing Your Software Supply Chain
#22
IT News / Apple Patches AirPods Bluetoot...
Last post by ixsky -
Apple Patches AirPods Bluetooth Vulnerability That Could Allow Eavesdropping

Apple has released a firmware update for AirPods that could allow a malicious actor to gain access to the headphones in an unauthorized manner.
Tracked as CVE-2024-27867, the authentication issue affects AirPods (2nd generation and later), AirPods Pro (all models), AirPods Max, Powerbeats Pro, and Beats Fit Pro.
"When your headphones are seeking a connection request to one of your previously

Source: Apple Patches AirPods Bluetooth Vulnerability That Could Allow Eavesdropping
#23
IT News / New Credit Card Skimmer Target...
Last post by ixsky -
New Credit Card Skimmer Targets WordPress, Magento, and OpenCart Sites

Multiple content management system (CMS) platforms like WordPress, Magento, and OpenCart have been targeted by a new credit card web skimmer called Caesar Cipher Skimmer.
A web skimmer refers to malware that is injected into e-commerce sites with the goal of stealing financial and payment information. 
According to Sucuri, the latest campaign entails making malicious modifications to the

Source: New Credit Card Skimmer Targets WordPress, Magento, and OpenCart Sites
#24
IT News / New Medusa Android Trojan Targ...
Last post by ixsky -
New Medusa Android Trojan Targets Banking Users Across 7 Countries

Cybersecurity researchers have discovered an updated version of an Android banking trojan called Medusa that has been used to target users in Canada, France, Italy, Spain, Turkey, the U.K., and the U.S.
The new fraud campaigns, observed in May 2024 and active since July 2023, manifested through five different botnets operated by various affiliates, cybersecurity firm Cleafy said in an analysis

Source: New Medusa Android Trojan Targets Banking Users Across 7 Countries
#25
IT News / ISC Stormcast For Wednesday, J...
Last post by ixsky -
ISC Stormcast For Wednesday, June 26th, 2024 https://isc.sans.edu/podcastdetail/9036, (Wed, Jun 26th)

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

Source: ISC Stormcast For Wednesday, June 26th, 2024 https://isc.sans.edu/podcastdetail/9036, (Wed, Jun 26th)
#26
IT News / Four FIN9 hackers indicted for...
Last post by ixsky -
Four FIN9 hackers indicted for cyberattacks causing $71M in losses

Four Vietnamese nationals linked to the international cybercrime group FIN9 have been indicted for their involvement in a series of computer intrusions that caused over $71 million in losses to companies in the U.S. [...]

Source: Four FIN9 hackers indicted for cyberattacks causing $71M in losses
#27
IT News / Over 110,000 Websites Affected...
Last post by ixsky -
Over 110,000 Websites Affected by Hijacked Polyfill Supply Chain Attack

Google has taken steps to block ads for e-commerce sites that use the Polyfill.io service after a Chinese company acquired the domain and modified the JavaScript library ("polyfill.js") to redirect users to malicious and scam sites.
More than 110,000 sites that embed the library are impacted by the supply chain attack, Sansec said in a Tuesday report.
Polyfill is a popular library that

Source: Over 110,000 Websites Affected by Hijacked Polyfill Supply Chain Attack
#28
IT News / WikiLeaks' Julian Assange Rele...
Last post by ixsky -
WikiLeaks' Julian Assange Released from U.K. Prison, Heads to Australia

WikiLeaks founder Julian Assange has been freed in the U.K. and has departed the country after serving more than five years in a maximum security prison at Belmarsh for what was described by the U.S. government as the "largest compromises of classified information" in its history.
Capping off a 14-year legal saga, Assange, 52, pleaded guilty to one criminal count of conspiring to obtain and

Source: WikiLeaks' Julian Assange Released from U.K. Prison, Heads to Australia
#29
IT News / CoinStats says North Korean ha...
Last post by ixsky -
CoinStats says North Korean hackers breached 1,590 crypto wallets

CoinStats suffered a massive security breach that compromised 1,590 cryptocurrency wallets, with the attack suspected to have been carried out by North Korean threat actors. [...]

Source: CoinStats says North Korean hackers breached 1,590 crypto wallets
#30
IT News / Microsoft Photos update brings...
Last post by ixsky -
Microsoft Photos update brings requested features to Windows 11

Microsoft's updated Photos app is now available for Windows 11 in the Windows Insider Program, bringing requested interface changes and better image quality. [...]

Source: Microsoft Photos update brings requested features to Windows 11