Normal view

There are new articles available, click to refresh the page.
Before yesterdaySecurity Boulevard

Alert: Kimsuky Hacking Group Targets Human Rights Activists

31 May 2024 at 03:00

As per recent reports a new social engineering attack attributed to the North Korea-linked Kimsuky hacking group is targeting human rights activists using fake Facebook accounts. This tactic, involving fictitious identities, marks a significant shift from their typical email-based spear-phishing strategies. According to a report by South Korean cybersecurity firm Genians, the attackers pose as […]

The post Alert: Kimsuky Hacking Group Targets Human Rights Activists appeared first on TuxCare.

The post Alert: Kimsuky Hacking Group Targets Human Rights Activists appeared first on Security Boulevard.

Strata Identity Wins 2024 Fortress Cybersecurity Award from Business Intelligence Group

30 May 2024 at 09:00

Strata’s Maverics Identity Orchestration Platform recognized as Best Authentication and Identity Solution BOULDER, Colo., May 30, 2024 — Strata Identity, the Identity Orchestration company, today announced its Maverics Identity Orchestration Platform received the prestigious 2024 Fortress Cybersecurity Award in the Authentication and Identity category. Strata’s Maverics implements an abstraction layer that bridges siloed and incompatible...

The post Strata Identity Wins 2024 Fortress Cybersecurity Award from Business Intelligence Group appeared first on Strata.io.

The post Strata Identity Wins 2024 Fortress Cybersecurity Award from Business Intelligence Group appeared first on Security Boulevard.

VMware Workstation and Fusion: Critical Security Flaws Fixed

30 May 2024 at 05:00

VMware, a leading virtualization technology company, has fixed multiple security vulnerabilities found in VMware Workstation and Fusion products. These flaws, if exploited, could allow attackers to cause a denial of service, obtain sensitive information, and execute arbitrary code. The affected versions are Workstation 17.x and Fusion 13.x, with patches available in versions 17.5.2 and 13.5.2 […]

The post VMware Workstation and Fusion: Critical Security Flaws Fixed appeared first on TuxCare.

The post VMware Workstation and Fusion: Critical Security Flaws Fixed appeared first on Security Boulevard.

Deuterbear RAT: China-Linked Hackers’ Cyber Espionage Tool

30 May 2024 at 03:00

Media reports claim that cybersecurity experts have recently unveiled new details about a remote access trojan (RAT) named Deuterbear, employed by the China-linked hacking group BlackTech. This sophisticated Deuterbear RAT malware is part of a broader cyber espionage operation targeting the Asia-Pacific region throughout the year.   Advancements Over Waterbear Deuterbear exhibits notable advancements over […]

The post Deuterbear RAT: China-Linked Hackers’ Cyber Espionage Tool appeared first on TuxCare.

The post Deuterbear RAT: China-Linked Hackers’ Cyber Espionage Tool appeared first on Security Boulevard.

News Alert: DNSFilter joins the WeProtect Global Alliance to help protect children online

By: bacohido
29 May 2024 at 15:52

Washington D.C., May 29, 2024, PRNewswire — DNSFilter announced today that it has joined the WeProtect Global Alliance to help prevent the spread of child sex abuse material (CSAM) online.

This partnership will help further WeProtect’s mission and work toward … (more…)

The post News Alert: DNSFilter joins the WeProtect Global Alliance to help protect children online first appeared on The Last Watchdog.

The post News Alert: DNSFilter joins the WeProtect Global Alliance to help protect children online appeared first on Security Boulevard.

NIST Struggles with NVD Backlog as 93% of Flaws Remain Unanalyzed

29 May 2024 at 17:32
NIST CSF vulnerabilities ransomware

The funding cutbacks announced in February have continued to hobble NIST’s ability to keep the government’s National Vulnerabilities Database (NVD) up to date, with one cybersecurity company finding that more than 93% of the flaws added have not been analyzed or enhanced, a problem that will make organizations less safe. “With the recent slowdown of..

The post NIST Struggles with NVD Backlog as 93% of Flaws Remain Unanalyzed appeared first on Security Boulevard.

‘Microsoft’ Scammers Steal the Most, the FTC Says

28 May 2024 at 12:54
A pig in a muddy farm field

Scammers impersonating Microsoft, Publishers Clearing House, Amazon and Apple are at the top of the FTC’s “who’s who” list. Based on consumer reports and complaints to the agency, hundreds of millions of dollars were stolen by bad actors pretending to be brands.

The post ‘Microsoft’ Scammers Steal the Most, the FTC Says appeared first on Security Boulevard.

RSAC Fireside Chat: Dispersive adapts WWII radio-signal masking tool to obfuscating network traffic

By: bacohido
28 May 2024 at 09:44

Spread spectrum technology helped prevent the jamming of WWII radio-controlled torpedoes and subsequently became a cornerstone of modern-day telecom infrastructure.

For its next act, could spread spectrum undergird digital resiliency? I had an evocative discussion about this at RSAC 2024(more…)

The post RSAC Fireside Chat: Dispersive adapts WWII radio-signal masking tool to obfuscating network traffic first appeared on The Last Watchdog.

The post RSAC Fireside Chat: Dispersive adapts WWII radio-signal masking tool to obfuscating network traffic appeared first on Security Boulevard.

Black Basta Ransomware Attack: Microsoft Quick Assist Flaw

28 May 2024 at 03:00

Recent reports claim that the Microsoft Threat Intelligence team stated that a cybercriminal group, identified as Storm-1811, has been exploiting Microsoft’s Quick Assist tool in a series of social engineering attacks. This group is known for deploying the Black Basta ransomware attack. On May 15, 2024, Microsoft released details about how this financially motivated group […]

The post Black Basta Ransomware Attack: Microsoft Quick Assist Flaw appeared first on TuxCare.

The post Black Basta Ransomware Attack: Microsoft Quick Assist Flaw appeared first on Security Boulevard.

City of Helsinki Data Breach: What You Need to Know

27 May 2024 at 12:17

On May 2, 2024, the City of Helsinki announced the data breach targeting its Education Division. However, the breach was discovered on April 30, 2024, and an investigation was promptly carried out. It was found that it has impacted tens of thousands of students, guardians, and personnel, causing considerable concern among the affected parties. They […]

The post City of Helsinki Data Breach: What You Need to Know appeared first on TuxCare.

The post City of Helsinki Data Breach: What You Need to Know appeared first on Security Boulevard.

Alert: Google Chrome Zero-Day Patch Fixes Critical Flaw

27 May 2024 at 12:08

In recent cybersecurity news, Google has swiftly addressed a critical security concern by releasing an emergency update for its Chrome browser. This update targets the third zero-day vulnerability detected in less than a week. Let’s have a look at the details of this Google Chrome zero-day patch and understand its implications for user safety.   […]

The post Alert: Google Chrome Zero-Day Patch Fixes Critical Flaw appeared first on TuxCare.

The post Alert: Google Chrome Zero-Day Patch Fixes Critical Flaw appeared first on Security Boulevard.

Understanding and Mitigating Privilege Escalation Vulnerabilities in the Linux Kernel

27 May 2024 at 05:00

Privilege escalation is a critical security issue in Linux systems, potentially leading to full system compromise. The Dirty COW and Dirty Pipe vulnerabilities are popular examples of privilege escalation vulnerabilities in the Linux kernel. Modernize your Linux patching approach with an automated and rebootless patching solution, KernelCare Enterprise. Like any complex software, the Linux kernel […]

The post Understanding and Mitigating Privilege Escalation Vulnerabilities in the Linux Kernel appeared first on TuxCare.

The post Understanding and Mitigating Privilege Escalation Vulnerabilities in the Linux Kernel appeared first on Security Boulevard.

Microsoft’s Copilot+ Recall Feature, Slack’s AI Training Controversy

By: Tom Eston
27 May 2024 at 00:00

Episode 331 of the Shared Security Podcast discusses privacy and security concerns related to two major technological developments: the introduction of Windows PC’s new feature ‘Recall,’ part of Microsoft’s Copilot+, which captures desktop screenshots for AI-powered search tools, and Slack’s policy of using user data to train machine learning features with users opted in by […]

The post Microsoft’s Copilot+ Recall Feature, Slack’s AI Training Controversy appeared first on Shared Security Podcast.

The post Microsoft’s Copilot+ Recall Feature, Slack’s AI Training Controversy appeared first on Security Boulevard.

💾

The Importance of Patching Vulnerabilities in Cybersecurity

27 May 2024 at 04:00

One of the most critical yet often overlooked aspects of cybersecurity is the timely patching of vulnerabilities. While much attention is given to sophisticated phishing attacks and the menace of password brute-forcing, the importance of addressing unpatched vulnerabilities cannot be overstated. These vulnerabilities represent low-hanging fruit for cybercriminals, offering a relatively straightforward path into systems. […]

The post The Importance of Patching Vulnerabilities in Cybersecurity appeared first on TuxCare.

The post The Importance of Patching Vulnerabilities in Cybersecurity appeared first on Security Boulevard.

Courtroom Recording Software Compromised in Supply Chain Attack

24 May 2024 at 17:43
software supply chain malware

Threat actors compromised a popular audio-visual software package used in courtrooms, prisons, government, and lecture rooms around the world by injecting a loader malware that gives the hackers remote access to infected systems, collecting data about the host computer and downloading more malicious payloads along the way. The software supply chain attack targeted Justice AV..

The post Courtroom Recording Software Compromised in Supply Chain Attack appeared first on Security Boulevard.

Black Basta Ascension Attack Redux — can Patients Die of Ransomware?

24 May 2024 at 13:45
Psychedelic doctor image, titled “Bad Medicine”

Inglorious Basta(rds): 16 days on, huge hospital system continues to be paralyzed by ransomware—and patient safety is at risk.

The post Black Basta Ascension Attack Redux — can Patients Die of Ransomware? appeared first on Security Boulevard.

Ekran System Enhances Privileged Access Management: New Workforce Password Management Feature

24 May 2024 at 02:39

At Ekran System, we constantly enhance the capabilities of our platform, ensuring that organizations have effective and up-to-date tools to protect their critical assets. This time, we are announcing the release of the Workforce Password Management (WPM) feature. This new functionality aims to improve Ekran System’s privileged access management (PAM) capabilities by streamlining password security […]

The post Ekran System Enhances Privileged Access Management: New Workforce Password Management Feature appeared first on Security Boulevard.

Leading LLMs Insecure, Highly Vulnerable to Basic Jailbreaks

23 May 2024 at 17:16
too many files

“All tested LLMs remain highly vulnerable to basic jailbreaks, and some will provide harmful outputs even without dedicated attempts to circumvent their safeguards,” the report noted.

The post Leading LLMs Insecure, Highly Vulnerable to Basic Jailbreaks appeared first on Security Boulevard.

Lasso Security Data Protection Tool Aimed at GenAI Applications

22 May 2024 at 10:00
a bunch of blue wires cabled together in a network.

The custom policy wizard helps prevent data leaks in GenAI tools by using CDP, requires no coding, and offers adaptive, intuitive policies.

“The real threat is in unstructured data, the kind of problem that requires data scientists and developers to solve.”

The post Lasso Security Data Protection Tool Aimed at GenAI Applications appeared first on Security Boulevard.

Hackers Leverage AI as Application Security Threats Mount

21 May 2024 at 20:37
smartphone screen pointing finger

Reverse-engineering tools, rising jailbreaking activities, and the surging use of AI and ML to enhance malware development were among the worrying trends in a recent report.

AI and ML are making life easier for developers. They’re also making life easier for threat actors.

The post Hackers Leverage AI as Application Security Threats Mount appeared first on Security Boulevard.

News alert: Memcyco report reveals only 6% of brands can stop digital impersonation fraud

21 May 2024 at 09:15

New York, NY, May 21, 2024, CyberNewsWire — Memcyco Inc., provider of digital trust technology designed to protect companies and their customers from digital impersonation fraud, released its inaugural 2024 State of Website Impersonation Scams report.

Notably, Memcyco’s research indicates … (more…)

The post News alert: Memcyco report reveals only 6% of brands can stop digital impersonation fraud first appeared on The Last Watchdog.

The post News alert: Memcyco report reveals only 6% of brands can stop digital impersonation fraud appeared first on Security Boulevard.

TuxCare and DOSIsoft Partner to Offer Ongoing Support and Cyber Protections for Radiation Oncology and Nuclear Medicine Software

21 May 2024 at 06:00

Hospitals worldwide to be offered extended lifecycle support and security alongside five DOSIsoft solutions   PALO ALTO, Calif. – May 21, 2024 – TuxCare, a global innovator in enterprise-grade cybersecurity for Linux, today announced an OEM partnership with France-based DOSIsoft, a leading provider of patient-specific imaging and dosimetry software solutions for radiation oncology and nuclear […]

The post TuxCare and DOSIsoft Partner to Offer Ongoing Support and Cyber Protections for Radiation Oncology and Nuclear Medicine Software appeared first on TuxCare.

The post TuxCare and DOSIsoft Partner to Offer Ongoing Support and Cyber Protections for Radiation Oncology and Nuclear Medicine Software appeared first on Security Boulevard.

Latest Ubuntu Security Updates: Fixing Linux Kernel Vulnerabilities

21 May 2024 at 05:00

Several vulnerabilities have been discovered in the Linux kernel that could lead to privilege escalation, denial of service, or information leaks. The Ubuntu security team has addressed these issues in the latest Ubuntu security updates for multiple releases. In this article, we will explore some of the vulnerabilities fixed and learn how to apply updates […]

The post Latest Ubuntu Security Updates: Fixing Linux Kernel Vulnerabilities appeared first on TuxCare.

The post Latest Ubuntu Security Updates: Fixing Linux Kernel Vulnerabilities appeared first on Security Boulevard.

❌
❌