News & Updates

Phishing remained the top identity abuser in 2022: IDSA report

Phishing was the most common type of identity-related incident in 2022, according to a study by Identity Defined Security Alliance (IDSA), a non-profit, identity and security intelligence firm.

The study, commissioned through Dimensional Research, also revealed that the top phishes among the incidents included email phishing, spear phishing, and vishing/smishing incidents.

To read this article in full, please click here

News & Updates

Microsoft found a new bug that allows bypassing SIP root restrictions in macOS

Apple fixed a vulnerability discovered by Microsoft researchers that lets attackers with root privileges bypass System Integrity Protection (SIP). Researchers from Microsoft discovered a vulnerability, tracked as CVE-2023-32369 and dubbed Migraine, that can allow attackers with root privileges to bypass System Integrity Protection (SIP). System Integrity Protection (also referred to as rootless) is a macOS security feature […]

The post Microsoft found a new bug that allows bypassing SIP root restrictions in macOS appeared first on Security Affairs.

News & Updates

RomCom RAT Using Deceptive Web of Rogue Software Sites for Covert Attacks

The threat actors behind RomCom RAT are leveraging a network of fake websites advertising rogue versions of popular software at least since July 2022 to infiltrate targets.
Cybersecurity firm Trend Micro is tracking the activity cluster under the name Void Rabisu, which is also known as Tropical Scorpius (Unit 42) and UNC2596 (Mandiant).
“These lure sites are most likely only meant for a small
News & Updates

Alert: Hackers Exploit Barracuda Email Security Gateway 0-Day Flaw for 7 Months

Enterprise security firm Barracuda on Tuesday disclosed that a recently patched zero-day flaw in its Email Security Gateway (ESG) appliances had been abused by threat actors since October 2022 to backdoor the devices.
The latest findings show that the critical vulnerability, tracked as CVE-2023-2868 (CVSS score: N/A), has been actively exploited for at least seven months prior to its discovery.
News & Updates

Hacked DJ’s Twitter account costs cryptocurrency investors $170,000

I know this will come as a shock to many of you, but scammers have once again
succeeded in stealing a lot of money from cryptocurrency investors.

The Twitter account of American DJ and electronic music producer Steve Aoki, who
is considered something of an “influencer” in the world of cryptocurrency, lies
at the heart of the scam.

According to a tweet [https://twitter.com/zachxbt/status/1662365276472590336]
posted by self-proclaimed blockchain sleuth ZachXBT, a hack of Aoki’s Twitter
account

Scroll to Top