• Hamas-Affiliated WIRTE Employs SameCoin Wiper in Disruptive Attacks Against Israel

    Hamas-Affiliated WIRTE Employs SameCoin Wiper in Disruptive Attacks Against Israel

    A threat actor affiliated with Hamas has expanded its malicious cyber operations beyond espionage to carry out disruptive attacks that exclusively target Israeli entities. The activity, linked to a group called WIRTE, has also targeted the Palestinian Authority, Jordan, Iraq, Saudi Arabia, and Egypt, Check Point said in an analysis. “The [Israel-Hamas] conflict has not…

    Read More

  • Free Decryptor Released for BitLocker-Based ShrinkLocker Ransomware Victims

    Free Decryptor Released for BitLocker-Based ShrinkLocker Ransomware Victims

    Romanian cybersecurity company Bitdefender has released a free decryptor to help victims recover data encrypted using the ShrinkLocker ransomware. The decryptor is the result of a comprehensive analysis of ShrinkLocker’s inner workings, allowing the researchers to discover a “specific window of opportunity for data recovery immediately after the removal of protectors from BitLocker-encrypted

    Read More

  • Comprehensive Guide to Building a Strong Browser Security Program

    Comprehensive Guide to Building a Strong Browser Security Program

    The rise of SaaS and cloud-based work environments has fundamentally altered the cyber risk landscape. With more than 90% of organizational network traffic flowing through browsers and web applications, companies are facing new and serious cybersecurity threats. These include phishing attacks, data leakage, and malicious extensions. As a result, the browser also becomes a vulnerability…

    Read More

  • OvrC Platform Vulnerabilities Expose IoT Devices to Remote Attacks and Code Execution

    OvrC Platform Vulnerabilities Expose IoT Devices to Remote Attacks and Code Execution

    A security analysis of the OvrC cloud platform has uncovered 10 vulnerabilities that could be chained to allow potential attackers to execute code remotely on connected devices. “Attackers successfully exploiting these vulnerabilities can access, control, and disrupt devices supported by OvrC; some of those include smart electrical power supplies, cameras, routers, home automation systems, and

    Read More

  • Iranian Hackers Use “Dream Job” Lures to Deploy SnailResin Malware in Aerospace Attacks

    Iranian Hackers Use “Dream Job” Lures to Deploy SnailResin Malware in Aerospace Attacks

    The Iranian threat actor known as TA455 has been observed taking a leaf out of a North Korean hacking group’s playbook to orchestrate its own version of the Dream Job campaign targeting the aerospace industry by offering fake jobs since at least September 2023. “The campaign distributed the SnailResin malware, which activates the SlugResin backdoor,”…

    Read More

  • Hood River 101: Residents graduate from Civics Academy

    Hood River 101: Residents graduate from Civics Academy

    HOOD RIVER — Oct. 28 was graduation night for a small group of Hood River residents as they completed Civics Academy: Hood River 101. A ceremony and presentation were held at the city council meeting with Mayor Blackburn and Jackie…

    Read More

  • Palo Alto Advises Securing PAN-OS Interface Amid Potential RCE Threat Concerns

    Palo Alto Advises Securing PAN-OS Interface Amid Potential RCE Threat Concerns

    Palo Alto Networks on Friday issued an informational advisory urging customers to ensure that access to the PAN-OS management interface is secured because of a potential remote code execution vulnerability. “Palo Alto Networks is aware of a claim of a remote code execution vulnerability via the PAN-OS management interface,” the company said. “At this time,…

    Read More

  • Bitcoin Fog Founder Sentenced to 12 Years for Cryptocurrency Money Laundering

    Bitcoin Fog Founder Sentenced to 12 Years for Cryptocurrency Money Laundering

    The 36-year-old founder of the Bitcoin Fog cryptocurrency mixer has been sentenced to 12 years and six months in prison for facilitating money laundering activities between 2011 and 2021. Roman Sterlingov, a dual Russian-Swedish national, pleaded guilty to charges of money laundering and operating an unlicensed money-transmitting business earlier this March. The U.S. Department of…

    Read More

  • Webinar: Learn How Storytelling Can Make Cybersecurity Training Fun and Effective

    Webinar: Learn How Storytelling Can Make Cybersecurity Training Fun and Effective

    Let’s face it—traditional security training can feel as thrilling as reading the fine print on a software update. It’s routine, predictable, and, let’s be honest, often forgotten the moment it’s over. Now, imagine cybersecurity training that’s as unforgettable as your favorite show. Remember how “Hamilton” made history come alive, or how “The Office” taught us…

    Read More

  • AndroxGh0st Malware Integrates Mozi Botnet to Target IoT and Cloud Services

    AndroxGh0st Malware Integrates Mozi Botnet to Target IoT and Cloud Services

    The threat actors behind the AndroxGh0st malware are now exploiting a broader set of security flaws impacting various internet-facing applications, while also deploying the Mozi botnet malware. “This botnet utilizes remote code execution and credential-stealing methods to maintain persistent access, leveraging unpatched vulnerabilities to infiltrate critical infrastructures,” CloudSEK said in a

    Read More