12 Aug Dharma ransomware created a hacking toolkit to make cybercrime easy The Dharma Ransomware-as-a-Service (RaaS) operation makes it easy for a wannabe cyber-criminal to get into the ransomware business by offering a toolkit that does almost everything for them. […]
11 Aug SAP updates security note for critical RECON vulnerability SAP today released its security patches for August, alerting of new critical and high-severity vulnerabilities in several of its products, mostly NetWeaver Application Server (AS). […]
11 Aug SANS infosec training org suffers data breach after phishing attack The SANS cybersecurity training organization has suffered a data breach after one of their employees fell victim to a phishing attack. […]
11 Aug Network intruders selling access to high-value companies Breaching corporate networks and selling access to them is a business in and of itself. For many hackers, this is how they make their living, others do it forced by financial struggles to supplement their revenue. […]
11 Aug Microsoft August 2020 Patch Tuesday fixes 2 zero-days, 120 flaws Today is Microsoft’s August 2020 Patch Tuesday, and while this is just a typical day for most of you, Windows administrators around the world want to pull their hair out. […]
11 Aug Colorado city forced to pay $45,000 ransom to decrypt files The City of Lafayette in Colorado, USA has been forced to pay $45,000 after the City’s devices were encrypted in July and they were unable to restore necessary files from backup. […]
10 Aug Upgraded Agent Tesla malware steals passwords from browsers, VPNs New variants of Agent Tesla remote access Trojan now come with modules dedicated to stealing credentials from applications including popular web browsers, VPN software, as well as FTP and email clients. […]
10 Aug Michigan State University discloses credit card theft incident Michigan State University (MSU) today disclosed that attackers were able to steal credit card and personal information from roughly 2,600 users of its shop.msu.edu online store between October 2019 and June 2020. […]
10 Aug Avaddon ransomware launches data leak site to extort victims Avaddon ransomware is the latest cybercrime operation to launch a data leak site that will be used to publish the stolen data of victims who do not pay a ransom demand. […]
10 Aug Office 365 will let you manage phishing simulation emails Microsoft is adding support for allowing emails containing malicious URLs or attachments to reach the mailboxes of end-users to make it easier to run phishing training sessions or simulations. […]