Cybersecurity researchers have detailed an updated version of the malware HeadCrab that’s known to target Redis database servers across the world since early September 2021. The development, which comes exactly a year after the malware was first publicly disclosed by Aqua, is a sign that the financially-motivated threat actor behind the campaign is actively adapting […]
Major US, UK Water Companies Hit by Ransomware

Two major water companies, Veolia North America in the United States and Southern Water in the United Kingdom, have been targeted in ransomware attacks that resulted in data breaches. Veolia describes itself as the world’s largest private player in the water sector, providing water and wastewater services to tens of millions of people. In a […]
Mother of all breaches reveals 26 billion records: what we know so far

The supermassive leak contains data from numerous previous breaches, comprising an astounding 12 terabytes of information, spanning over a mind-boggling 26 billion records. The leak, which contains LinkedIn, Twitter, Weibo, Tencent, and other platforms’ user data, is almost certainly the largest ever discovered. There are data leaks, and then there’s this. A supermassive Mother of […]
China’s Cyberspace Administration is conducting review of Shein -WSJ

Jan 17 (Reuters) – The Cyberspace Administration of China is conducting a cybersecurity review of online retailer Shein’s data handling and sharing practices, the Wall Street Journal reported. China’s internet regulator is looking at how Shein handles information on its partners, suppliers and staff in China, and if the fashion company can protect such data […]
High-Severity Flaws Uncovered in Bosch Thermostats and Smart Nutrunners

Multiple security vulnerabilities have been disclosed in Bosch BCC100 thermostats and Rexroth NXA015S-36V-B smart nutrunners that, if successfully exploited, could allow attackers to execute arbitrary code on affected systems. Romanian cybersecurity firm Bitdefender, which discovered the flaw in Bosch BCC100 thermostats last August, said the issue could be weaponized by an attacker to alter the […]
Ukraine is on the front lines of global cyber security

There is no clear dividing line between “cyber warfare” and “cyber crime.” This is particularly true with regard to alleged acts of cyber aggression originating from Russia. The recent suspected Russian cyber attack on Ukrainian mobile operator Kyivstar is a reminder of the potential dangers posed by cyber operations to infrastructure, governments, and private companies […]
68% of organizations face risks due to cybersecurity skills shortage

Cybersecurity skills were analyzed in a recent report by Fortinet. According to the report, the number of organizations confirming five or more breaches jumped by 53% between 2021 and 2022. Sixty-eight percent of organizations indicate they face additional risks because of cybersecurity skills shortages, consistent with 67% in 2021. Ninety-three percent of respondents indicate their […]
NSA Blocked 10 Billion Connections to Malicious and Suspicious Domains

Published on Tuesday, the NSA’s 2023 Cybersecurity Year in Review report (PDF) details the agency’s efforts in cybersecurity and its work with government partners, foreign partners, and defense industrial base (DIB) entities to improve national security. The NSA’s cybersecurity efforts mainly focus on protecting national security systems (NSS), which contain classified information or are critical […]
Sony’s game plans leaked online by hackers – Bloomberg News

Dec 19 (Reuters) – Sony-owned (6758.T) Insomniac Games’ more than 1.3 million files, including game roadmaps, budgets and information about an upcoming “Wolverine” title, have been leaked online by the Rhysida ransomware group, Bloomberg News reported on Tuesday. The files show the Japanese company plans to release several Marvel-inspired titles in the next decade, including […]
Clorox, Boeing, MGM and More: Why Big Hacks Have Surged in 2023

Widely disruptive, large-scale hacks are surging. After a lull in 2022, ransomware attacks on high-value targets such as big companies, banks, hospitals or government agencies, have seen a “massive uptick” this year, rising 51% through late November, according to cybersecurity firm Crowdstrike Holdings Inc. Last year, such attacks declined from the year before, the company […]