Archives: News
News articles and updates
Gizmodo Readers Hit with ClickFix Malware Prompts After Account Compromise
Gizmodo, a popular tech news site, has reported an account compromise that led to ClickFix malware prompts being displayed to its readers, raising concerns about user security.
Health Board Apologizes for Misleading Vacation Day Phishing Test
The Health Board of Metropolis County has apologized after sending a fake email offering an extra vacation day, which was intended as a phishing test for employees.
ShinyHunters Breaches Expose Evolving Tactics of Modern Cyberattacks
The recent data breaches by the hacking group ShinyHunters have revealed the growing sophistication of cybercriminal tactics, including exploiting third-party software vulnerabilities and leveraging social engineering techniques.
False Emergency Alerts Spark Chaos Across Brazil, Suspected Cyberattack Blamed
A suspected cyberattack has triggered widespread false emergency alerts across parts of Brazil, causing panic and disrupting local emergency services.
Canadian Utility Discloses Data Breach, But Key Details Remain Unclear
A Canadian utility company has acknowledged a data breach, but has not provided specifics on the nature or extent of the incident, leaving customers and the public with unanswered questions.
Squid Proxy Flaw ‘Squidbleed’ Exposes User Data, Researchers Warn
Cybersecurity researchers have uncovered a decades-old vulnerability in the Squid proxy server that could potentially expose user data. The flaw, dubbed 'Squidbleed,' has existed in the popular open-source software for years.
Researchers Uncover Severe Security Flaws in Dify’s Enterprise AI Chatbot Platform
Cybersecurity experts have discovered critical vulnerabilities in the Dify platform that could expose sensitive AI-powered conversations across different tenants, raising concerns about enterprise data security.
DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor Traffic
Cybersecurity researchers have uncovered a new tactic used by the DragonForce hacking group to conceal their malicious backdoor traffic by abusing Microsoft Teams' built-in relay functionality.
Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites
Security researchers have successfully disrupted the SocGholish malware network, cleaning up over 14,971 infected WordPress sites in a coordinated global effort.
E-Commerce Checkout Pages Now a PCI DSS Compliance Concern
Cybersecurity experts warn that the scripts running on e-commerce checkout pages pose a serious threat to customer payment data, requiring businesses to strengthen security measures to maintain PCI DSS compliance.