• Telegram App Flaw Exploited to Spread Malware Hidden in Videos

    Telegram App Flaw Exploited to Spread Malware Hidden in Videos

    A zero-day security flaw in Telegram’s mobile app for Android called EvilVideo made it possible for attackers to malicious files disguised as harmless-looking videos. The exploit appeared for sale for an unknown price in an underground forum on June 6, 2024, ESET said. Following responsible disclosure on June 26, the issue was addressed by Telegram…

    Read More

  • How to Reduce SaaS Spend and Risk Without Impacting Productivity

    How to Reduce SaaS Spend and Risk Without Impacting Productivity

    There is one simple driver behind the modern explosion in SaaS adoption: productivity. We have reached an era where purpose-built tools exist for almost every aspect of modern business and it’s incredibly easy (and tempting) for your workforce to adopt these tools without going through the formal IT approval and procurement process. But this trend…

    Read More

  • Patchwork Hackers Target Bhutan with Advanced Brute Ratel C4 Tool

    Patchwork Hackers Target Bhutan with Advanced Brute Ratel C4 Tool

    The threat actor known as Patchwork has been linked to a cyber attack targeting entities with ties to Bhutan to deliver the Brute Ratel C4 framework and an updated version of a backdoor called PGoShell. The development marks the first time the adversary has been observed using the red teaming software, the Knownsec 404 Team…

    Read More

  • CrowdStrike Explains Friday Incident Crashing Millions of Windows Devices

    CrowdStrike Explains Friday Incident Crashing Millions of Windows Devices

    Cybersecurity firm CrowdStrike on Wednesday blamed an issue in its validation system for causing millions of Windows devices to crash as part of a widespread outage late last week. “On Friday, July 19, 2024 at 04:09 UTC, as part of regular operations, CrowdStrike released a content configuration update for the Windows sensor to gather telemetry…

    Read More

  • Candidate Q&As: Klickitat County Board of Commissioners Districts 1, 3

    Candidate Q&As: Klickitat County Board of Commissioners Districts 1, 3

    Klickitat County Commissioner District 1, Amanda KitchingsKlickitat County Commissioner District 3, Dan Christopher and Ron Ihrig

    Read More

  • Chinese Hackers Target Taiwan and US NGO with MgBot Malware

    Chinese Hackers Target Taiwan and US NGO with MgBot Malware

    Organizations in Taiwan and a U.S. non-governmental organization (NGO) based in China have been targeted by a Beijing-affiliated state-sponsored hacking group called Daggerfly using an upgraded set of malware tools. The campaign is a sign that the group “also engages in internal espionage,” Symantec’s Threat Hunter Team, part of Broadcom, said in a new report…

    Read More

  • New ICS Malware ‘FrostyGoop’ Targeting Critical Infrastructure

    New ICS Malware ‘FrostyGoop’ Targeting Critical Infrastructure

    Cybersecurity researchers have discovered what they say is the ninth Industrial Control Systems (ICS)-focused malware that has been used in a disruptive cyber attack targeting an energy company in the Ukrainian city of Lviv earlier this January. Industrial cybersecurity firm Dragos has dubbed the malware FrostyGoop, describing it as the first malware strain to directly…

    Read More

  • How to Securely Onboard New Employees Without Sharing Temporary Passwords

    How to Securely Onboard New Employees Without Sharing Temporary Passwords

    The initial onboarding stage is a crucial step for both employees and employers. However, this process often involves the practice of sharing temporary first-day passwords, which can expose organizations to security risks. Traditionally, IT departments have been cornered into either sharing passwords in plain text via email or SMS, or arranging in-person meetings to verbally…

    Read More

  • Magento Sites Targeted with Sneaky Credit Card Skimmer via Swap Files

    Magento Sites Targeted with Sneaky Credit Card Skimmer via Swap Files

    Threat actors have been observed using swap files in compromised websites to conceal a persistent credit card skimmer and harvest payment information. The sneaky technique, observed by Sucuri on a Magento e-commerce site’s checkout page, allowed the malware to survive multiple cleanup attempts, the company said. The skimmer is designed to capture all the data…

    Read More

  • Meta Given Deadline to Address E.U. Concerns Over ‘Pay or Consent’ Model

    Meta Given Deadline to Address E.U. Concerns Over ‘Pay or Consent’ Model

    Meta has been given time till September 1, 2024, to respond to concerns raised by the European Commission over its “pay or consent” advertising model or risk-facing enforcement measures, including sanctions. The European Commission said the Consumer Protection Cooperation (CPC) Network has notified the social media giant that the model adopted for Facebook and Instagram…

    Read More