What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
itsecurityguru.webp 2022-03-15 10:20:42 Ukrainian machines hit with another Malware variant (lien direct) Security researchers have discovered the fourth destructive malware variant targeting Ukrainian machines so far this year. ESET claimed to have made the find yesterday, noting that the “CaddyWiper” malware was seen on a few dozen systems in a “limited number” of organizations. The malware erases user data and partitions information from attached drives. It also […] Malware ★★★★★
itsecurityguru.webp 2022-03-15 10:08:24 Cybersecurity tops agenda in Asean boardrooms (lien direct) Businesses in Asean have placed cybersecurity squarely on the agenda, with business leaders discussing plans to plug existing gaps and adopt next-generation capabilities. This focus has been prompted by 94% of organisations in the region reporting a climb in cyberattacks last year, with 24% seeing at least 50% increase in disruptive attacks. 92% of Asean […] Guideline ★★
itsecurityguru.webp 2022-03-15 09:45:39 Ransomware groups target “enemies of Russia” (lien direct) A new report Accenture suggests that cyber-criminals have split into pro-Ukraine and pro-Russia factions, with the latter focusing on western critical national infrastructure (CNI). The consulting giant’s Accenture Cyber Threat Intelligence (ACTI) arm has warned that the recent ideological split could mean increased risk for Western organizations, as pro-Kremlin groups morph into quasi-activists. Government, media, […] Threat
itsecurityguru.webp 2022-03-14 15:40:03 RiskOps platform Feedzai grows +40% year-over-year (lien direct) Today, RiskOps platform Feedzai announced that it ended its fiscal year with +40% year-over-year growth in exit annual recurring revenue (ARR). With a total of 24 tier one new logos across the globe, the company also recorded no churn on core customers. Additionally, extended contracts were signed with key clients like Citi Bank in North America, Lloyds […] ★★
itsecurityguru.webp 2022-03-14 10:32:49 Malware hidden in fake Valorant aim-bot (lien direct) Security analysts from Korea have detected a malware distribution campaign using Valorant cheat lures on YouTube in order to trick players into downloading RedLine, a powerful information stealer. This kind of lure is relatively common as threat actors can easily avoid YouTube’s new content submission reviews, or simply create new accounts when old ones are […] Malware Threat
itsecurityguru.webp 2022-03-14 10:11:06 (Déjà vu) UK announces digital identity security legislation (lien direct) The UK government has announced plans to introduce new legislation, aiming to improve the security of digital identity solutions. The rules are designed to enhance trust in digital identities and scaling down reliance on physical documents such as passports and driving licenses. The UK's Department for Digital, Culture, Media and Sport (DCMS) made the announcement […]
itsecurityguru.webp 2022-03-14 09:45:27 Ukraine\'s “IT Army” hit with info-stealing malware (lien direct) Security researchers have warned pro-Ukrainian actors of employing DDoS tools to attack Russia, as they may be ridden with info-stealing malware. In late February, Ukrainian vice prime minister, Mykhailo Fedorov, called for a volunteer “IT army” of hackers to DDoS Russian targets. Cisco Talos has claimed that many cyber criminals are attempting to exploit the outpouring of […] Malware
itsecurityguru.webp 2022-03-11 16:29:53 High rates of known, exploitable vulnerabilities still found in the wild, report reveals (lien direct) This week, smart vulnerability management provider Edgescan has published the findings of its 2022 Vulnerability Statistics Report, which for the 7th year running offers a comprehensive view of the state of vulnerability management globally. The report reveals that organizations are still taking nearly two months to remediate critical risk vulnerabilities, with the average mean time […] Vulnerability ★★★★★
itsecurityguru.webp 2022-03-11 10:58:59 Microsoft calls for more women in cyber (lien direct) The tech giant Microsoft has claimed that encouraging women into cybersecurity jobs is “mission critical” to addressing the labour shortage in the cybersecurity industry. The company’s corporate vice president of security, compliance, identity and management, Vasu Jakkal argues that diversity is sorely needed in the industry in order to address the evolving threat landscape and […] Threat
itsecurityguru.webp 2022-03-11 10:41:37 Conti ransomware group spent millions in 2021 (lien direct) The prolific Conti ransomware collective spent millions on salaries, tools and services throughout 2021. The recent leak of the pro-Russia group’s internal chats by a Ukrainian researcher, analysed by security vendor BreachQuest, has revealed fascinating insights into the workings of the operation. The group’s structure is not dissimilar to that of a legitimate business, with […] Ransomware
itsecurityguru.webp 2022-03-10 10:56:54 DSbD claims UK is on the path to “cyber disaster” (lien direct) Professor John Goodacre, challenge director – Digital Security by Design, UKRI, and Professor of Computer Architectures, The University of Manchester, told attendees at the last leg of the DSbD roadshow in Wales that the UK is on the path to “cyber disaster”. He claimed that the current approach of discovering and patching vulnerabilities is growing […] Patching
itsecurityguru.webp 2022-03-10 10:15:07 Up to 30% of WordPress plugin bugs don\'t get patched (lien direct) A global leader in WordPress security and threat intelligence, Patchstack, recently released a whitepaper highlighting the sorry state of WordPress security in 2021. Reported vulnerabilities grew 150% in 2021 from the previous year. Perhaps most alarmingly, 29% of the critical flaws in WordPress plugins never received an update. WordPress is used in 43.2% of websites […] Threat Guideline
itsecurityguru.webp 2022-03-09 11:36:48 US critical infrastructure hit by ransomware (lien direct) A new FBI report has revealed that at least 52 critical national infrastructure (CNI) entities have been compromised by a ransomware variant. The FBI has claimed that organisations across 10 CNI sectors had been impact as of January this year.# Key sectors include manufacturing, financial services, government and IT. A prolific ransomware variant has compromised […] Ransomware
itsecurityguru.webp 2022-03-09 11:24:12 Chinese phishing accounts are targeting EU diplomats (lien direct) A group with ties to China tracked as TA416 but widely known as Mustang Panda has targeted European diplomats since August 2020. The most recent activity employs refreshed lures to coincide with the Russian invasion of Ukraine. A new report by Proofpoint found that TA416 leads cyber-espionage campaigns against the EU, focusing on long-term goals […] Guideline
itsecurityguru.webp 2022-03-08 13:00:51 TLStorm: Armis finds Three Critical Zero-Days in APC Smart-UPS devices that could impact over 7 in 10 organisations worldwide (lien direct)   Armis, unified asset visibility and security company, announced the discovery of three zero-day vulnerabilities in APC Smart-UPS devices that can allow attackers to gain remote access. If exploited, these vulnerabilities, collectively known as TLStorm, allow threat actors to disable, disrupt, and even destroy APC Smart-UPS devices and attached assets, researchers have warned.   Uninterruptible […] Threat
itsecurityguru.webp 2022-03-08 10:01:41 KnowBe4 tackles Security Culture with new Maturity Model (lien direct) With 85% of data breaches caused by social engineering or human error, creating a company-wide security culture has risen up the agenda for many organisations. However, the phrase can be problematic in itself – as definitions vary, with some even equating it to security awareness training. KnowBe4 says it wants to change this and recognise […] ★★★★★
itsecurityguru.webp 2022-03-08 09:55:16 Cyberattack hits PressReader (lien direct) The worlds largest digital newspaper and magazine distributor has been hit with a cyberattack, leaving users without access to more than 7000 publications. PressReader is headquartered in Vancouver, Canada, but has offices in both Dublin, Ireland and Manila, Philippines. The organisation began experiencing network outages on Thursday, affecting its Branded Editions website and apps, alongside […]
itsecurityguru.webp 2022-03-08 09:41:42 25,000 Russian-linked accounts blocked by Coinbase (lien direct) Coinbase has announced its full support of Russian sanctions, revealing the extent to which it has worked with governments. The organisation has also revealed that they have blocked 25,000 accounts linked to Russians suspected of illicit activity. “Many of which we have identified through our own proactive investigations,” the company said. “Once we identified these […]
itsecurityguru.webp 2022-03-07 13:25:10 Ukraine will join NATO cyber hub (lien direct) Ukraine is set to join the NATO cyber-defence centre following a vote confirming its admission. The move is expected to anger Russia and bring Ukraine closer to NATO. The Cooperative Cyber Defence Centre of Excellence (CCDCOE) announced that Ukraine and several other non-NATO countries will become a “contributing participant”. “Capability and knowledge comes from experience, […]
itsecurityguru.webp 2022-03-04 11:00:46 Ukraine\'s request to block Russia\'s internet rejected (lien direct) As Russia invaded Ukraine, the besieged country asked  the Internet Corporation for Assigned Names and Numbers (ICANN) to take away Russia’s top-level domains (TLD), such as .ru, .рф, and .su be revoked, as well as the nation’s associated Secure Sockets Layer (SSL) certificates. Andrii Nabok, ICANN’s Ukrainian representative, and Mykhailo Fedorov, Ukraine’s vice prime minister […] ★★
itsecurityguru.webp 2022-03-04 10:50:16 Telegram now favoured by hacktivists, cybercriminals (lien direct) As the conflict in Ukraine progresses, Telegram messaging has emerged as a favourite tool for both hacktivists and cybercriminals alike. Research from the cybersecurity company Check Point suggests that there are six times as many groups on the messaging apps  since February 24. Some topic-specific groups have grown significantly, some even reaching more than 250,000 members. […] Tool ★★★
itsecurityguru.webp 2022-03-04 10:18:32 Blackouts hit Ukraine (lien direct) Several Ukrainian cities are experiencing power outages as the Russian invasion rages on. NetBlocks, a Global internet access tracker, has shared data highlighting widespread internet outages across Mariupol, Sumy and other regions of the country. This comes alongside an increase in bombing campaigns and rocket fire from Russian units. Alp Toker, director of NetBlocks, told […]
itsecurityguru.webp 2022-03-03 11:57:39 Cyber attack attempts on Ukraine surge tenfold (lien direct) A threat actor in support of Russia has compromised at least 30 Ukrainian universities as vulnerability exploit attempts have surged, according to Wordfence. The security firm has generated useful intelligence on the the attacks campaign as it protects over 8300 Ukrainian WordPress sites, including those of private businesses, government, military and police. The attack campaign […] Vulnerability Threat
itsecurityguru.webp 2022-03-03 10:52:35 Medical infusion pumps vulnerable to attack (lien direct) Researchers at Palo Alto Networks have collected data from 200,000 medical infusion pumps used to administer medicines and fluids to patients, finding that 75% of them are running with known security issues. Research has revealed that tens of thousands of devices are vulnerable to six critical severity flaws (9.8 out of 10) reported in 2019 […] ★★★★
itsecurityguru.webp 2022-03-02 11:41:42 Cyberattacks in Ukraine could reach other countries (lien direct) While the majority of cyberattacks in Ukraine are planned and highly targeted, there are signs that things are set to change. A new Trojan dubbed “FoxBlade” was discovered by Microsoft researchers on Ukrainian government systems that would allow attackers to use infected PCs in DDoS attacks. Experts are concerned that malware operators will try to infect […] Malware
itsecurityguru.webp 2022-03-02 11:25:45 TeaBot malware resurfaces on Google Play Store (lien direct) TeaBot malware has been spotted on the Google Play Store posing as a QR code app, already spreading to more than 10,000 devices. Its distributors used this trick in January, and while Google ousted those entries the malware has found its way back onto the Android repository. Cleafy, an online fraud management and prevention company, […] Malware
itsecurityguru.webp 2022-03-02 11:07:11 Conti ransomware group suffers another leak (lien direct) A Ukrainian researcher retaliating to Conti siding with Ukraine has dealt another devastating blow to the ransomware operation. More internal conversations have been leaked, alongside the source for their ransomware, administrative panels and more. The Ukrainian researcher,, who uses the Twitter handle @ContiLeaks leaked 393 JSON files containing over 60,000 internal messages on Sunday. The messages […] Ransomware
itsecurityguru.webp 2022-03-02 10:39:36 Hackers steal employee and internal data from Nvidia (lien direct) Nvidia has admitted that employee and internal data was stolen in an apparent ransomware attack last week. The chip behemoth initially gave little away, announcing only that its  “business and commercial activities continue uninterrupted” while the attack was investigated. A new statement provided more information: “Shortly after discovering the incident, we further hardened our network, […] Ransomware
itsecurityguru.webp 2022-03-01 10:39:18 Toyota hit with ransomware attack, stops production (lien direct) Toyota, the worlds largest car maker has stopped production at all of its plants in Japan following a ransomware attack, reports suggest. Toyota announced it would suspend 28 production lines at 14 factories on Tuesday, planning to resume on Wednesday, according to Nikkei. The report claimed that the cyberattack targeted Kojima Industries, a plastic parts […] Ransomware
itsecurityguru.webp 2022-03-01 10:21:02 Russian state media hacked (lien direct) The international hacking organisation Anonymous have claimed responsibility for taking down Russian media sites. Among those affected were  the state-owned news agency TASS and daily newspaper Kommersant, having been temporarily taken offline on Monday, while St Petersburg-based news outlet Fontanka's content was replaced with a message that read, “This is not our war, let's stop […]
itsecurityguru.webp 2022-03-01 10:07:38 Moscow exchange hit with cyberattack (lien direct) Hackers endorsed by Kyiv officials have claimed responsibility for a cyberattack on the Moscow Stock Exchange.  The website for the Moscow Stock Exchange was offline and inaccessible on Monday. The Ukraine IT Army posted a message on Telegram claiming that it had taken only five minutes to take down the website. The hackers claiming responsibility are […]
itsecurityguru.webp 2022-02-28 11:30:40 Starlink activated to keep Ukraine\'s internet running (lien direct) In response to several Russian cyberattacks on the country, Ukraine’s Vice Prime Minister and Minister of Digital Transformation Mykhailo Fedorov requested help from SpaceX and Tesla billionaire Elon Musk. Responding on Twitter, Musk confirmed  “Starlink service is now active in Ukraine. More terminals en route.” SpaceX’s low-earth-orbit (LEO), high speed, low latency internet service, which […]
itsecurityguru.webp 2022-02-28 11:18:24 Meta restricts Russian state-controlled media (lien direct) Nick Clegg, VP of global affairs for Meta, announced yesterday that the firm has restricted access to several accounts in Ukraine at the request of its government. “We are also reviewing other government requests to restrict Russian state-controlled media. In the meantime, we will continue to label and fact check these outlets as well as […]
itsecurityguru.webp 2022-02-28 10:44:00 Conti sides with Russia, internal chats leaked (lien direct) A Ukrainian security researcher leaked the messages after the gang sided with Russia over the invasion of Ukraine. BleepingComputer has independently confirmed the validity of these messages from internal conversations previously shared with BleepingComputer regarding Conti’s attack on Shutterfly. Vitali Kremez, CEO of Advintel, has been tracking the Conti/TrickBot operation for the past two years […]
itsecurityguru.webp 2022-02-28 10:24:25 Hackers will return focus to consumers in 2022 (lien direct) Research by ReasonLabs suggests that hackers will return their focus to consumers in 2022. The detailed report claims that a number of factors have led to consumers being a more lucrative target for hackers when compared to large companies. One of these factors is the continued shift to remote working and bigger budgets for on-site […]
itsecurityguru.webp 2022-02-25 15:22:14 Cato Networks experiences near 100% revenue growth for second year in a row (lien direct) Cato Networks has recently reported its 2021 business results, showing a growing revenue by 96% YoY, increasing headcount by 66%, and a doubling in valuation to $2.5 billion with an added $200 million investment.    In a new Total Economic Impact (TEI) study, Forrester Research found that Cato delivers 246% ROI in under six months. Along with performance improvements, increased […] ★★
itsecurityguru.webp 2022-02-25 13:59:10 1 in 6 Enterprise Endpoints exposed to identity risks (lien direct) Yesterday, Illusive released its Analysing Identity Risks (AIR) 2022 report, which examines the unmanaged, misconfigured and exposed identity risks within organisations. The report shows that all organisations are vulnerable to attack, despite the deployment of privileged account management (PAM), multi-factor authentication (MFA) and other identity and access management (IAM) solutions. Illusive’s security teams witnessed these […] ★★★★
itsecurityguru.webp 2022-02-25 11:37:10 Biden considers “massive” cyber attack on Russia (lien direct) An NBC News report suggests that the US could be preparing for its most significant cyber offensive campaign in recent memory as Biden considers his options for action against Russia. The report cites two US intelligence officials, one Western intelligence official and an unnamed person, claiming that a “menu” of options have been placed in […]
itsecurityguru.webp 2022-02-25 11:21:15 Ukraine calls for volunteer hackers to aid in cyber-war (lien direct) Ukraine’s government has reportedly called for volunteers with hacking skills to aid in the protection of the country’s critical infrastructure. Reuters reported on February 24 that government-backed notices have appeared in online forums. Co-founder of Cyber Unit Technologies and major Ukrainian promotor of ethical hacking Yegor Aushev told the news agency that he wrote the […]
itsecurityguru.webp 2022-02-25 10:54:15 (Déjà vu) Free Cyber Skills Training Launched for UK Pupils (lien direct) The UK government has announced plans to provide free cyber skills training secondary school pupils. The program, dubbed Cyber Explorers, intends to educate 30,000 11 to 14-year-olds on many cybersecurity concepts, including open-source intelligence, digital forensics and social engineering. Students will use a new online learning platform to explore a range of scenarios, collecting virtual […] ★★★
itsecurityguru.webp 2022-02-24 13:03:52 Ransomware extortion doesn\'t end after paying up (lien direct) A study carried out by cyber security specialist Venafi has confirmed existing fears that in most cases of paying the ransom, extortion simply continues. Key findings include: 18% of victims who paid the ransom still had their data exposed on the dark web. 8% refused to pay the ransom, and the attackers tried to extort […]
itsecurityguru.webp 2022-02-24 10:27:50 Expert opinion: NHS reveals data leak (lien direct) This week, the NHS reported a data leak incident to the Information Commissioner’s Office, which puts third-party contractor cybersecurity risks in the spotlight.   What happened? A former employee of PSL Print Management, a consultancy used by the NHS, requested all emails and text messages regarding his employment at the company. PSL obliged, but sent […] ★★★
itsecurityguru.webp 2022-02-23 16:03:29 The Inside Man Season 4: The Future of Cybersecurity Awareness Training (lien direct) Corporate training videos. The words alone make you feel bored. They summon dreary memories of wasted hours, terrible acting and worse storytelling. If I told you that it doesn't have to be that way, that training videos can be informative, engaging and even exciting, would you believe me? You'd be forgiven if you didn't. But […]
itsecurityguru.webp 2022-02-23 11:57:05 EU cyber-response team deployed (lien direct) The European Union’s newly formed Cyber Rapid-Response Team (CRRT) has been deployed to Ukraine to aid in combat against Russian threat actors. In a tweet yesterday, the Lithuanian Ministry of Defence confirmed the CRRT is to be deployed at the request of the Ukrainian government. Lithuania will sit at the head of a coalition of […] Threat ★★
itsecurityguru.webp 2022-02-23 11:36:18 LockBit, Conti ransomware targets industrial sector (lien direct) A new report from Dragos suggests that the industrial sector has become a common target for both financially motivated and state sponsored attacks. Ransomware groups known as LockBit and Conti have been most active in targeting organisations with and Industrial Control System (ICS)/Operational Technology (OT) environment in 2021. Researchers noted that the manufacturing vertical was […] Ransomware ★★★★
itsecurityguru.webp 2022-02-23 11:18:52 Hackers focused on supply chains in 2021 (lien direct) Cybercriminals have put most of their time into breaking supply chains over the last year. The manufacturing sector has emerged as a top target. IBM’s annual X-Force Threat Intelligence Index, a report based on threat data and security incidents over 2021, suggests that businesses are being “imprisoned” by criminals exploiting vulnerabilities and deploying ransomware. Researchers for […] Threat ★★
itsecurityguru.webp 2022-02-22 16:06:32 Virsec Appoint Greg Kelton as Senior Regional Director for EMEA (lien direct) Following on from their recent announcement of their Deterministic Protection Platform (DPP), California based software security firm Virsec have todayannounced the appointment of Greg Kelton as the new Senior Regional Director for EMEA, an appointment which will help to drive growth and expansion for Virsec in a key region. Greg is a hugely experienced software […] ★★★★★
itsecurityguru.webp 2022-02-22 12:50:50 UK Defence Secretary warns Russia of cyber-retaliation (lien direct) The UK's Secretary of State for Defence has reportedly warned Russia that they will retaliate with cyber attacks if the Kremlin targets British networks. The House of Commons statement from Ben Wallace follows President Putin’s order to Russian troops to invade the separatist Donetsk and Luhansk regions of Ukraine. “I'm a soldier – I was always […]
itsecurityguru.webp 2022-02-22 11:39:37 Ukraine police arrest phishing group (lien direct) The Ukrainian cyberpolice have arrested five individuals who stole credit card data from at least 70,000 people. The group of phishing actors lured people to fake mobile top up service sites. According to law enforcement, the actors used the stolen information to empty their victims’ bank accounts. The phishing operation relied on marketing and advertising […] ★★★★★
itsecurityguru.webp 2022-02-22 11:27:24 IRS offers live interview to replace facial recognition (lien direct) US taxpayers signing up for an online account now have the option of a live interview to verify their identity instead of using ID.me facial recognition. Following discomfort surrounding their collection of biometric data, the IRS has offered the interviews as a short term solution for this year’s filing system. The agency previously required taxpayers […]
Last update at: 2024-05-16 19:08:33
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter