Category cyber-attacks

Attackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Citrix has issued an urgent warning to its clientele regarding a pressing security breach affecting its NetScaler application delivery controller (ADC) devices. The vulnerability is being exploited by malicious actors to orchestrate amplified distributed denial-of-service (DDoS) assaults against various targets across the globe. The company stated that attackers, potentially including…

Read MoreAttackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Microsoft Alerts CrowdStrike to Hackers Targeting Azure Cloud Users

Recent investigations have surfaced an attempt to breach CrowdStrike, a prominent cybersecurity firm, within the backdrop of the ongoing espionage campaign associated with SolarWinds. The intrusion was reportedly thwarted, revealing critical insights into the current landscape of cybersecurity threats. On December 15, Microsoft’s Threat Intelligence Center flagged a third-party reseller’s…

Read MoreMicrosoft Alerts CrowdStrike to Hackers Targeting Azure Cloud Users

New SolarWinds Vulnerability Likely Allowed Hackers to Deploy SUPERNOVA Malware

A critical vulnerability has been identified in the SolarWinds Orion software, which may have been exploited by threat actors as a zero-day to deliver the SUPERNOVA malware across targeted environments. This discovery highlights significant risks for organizations utilizing this widely adopted system monitoring and management tool. The CERT Coordination Center…

Read MoreNew SolarWinds Vulnerability Likely Allowed Hackers to Deploy SUPERNOVA Malware

AutoHotkey Password Stealer Targeting US and Canadian Bank Users

Recent cybersecurity research has unveiled a sophisticated credential-stealing malware, implemented using AutoHotkey (AHK), targeting financial institution clients across the US and Canada. This campaign, ongoing since early 2020, emphasizes the alarming trend of cybercriminals employing customized tools for data theft. Among the victims are customers of several prominent banks, including…

Read MoreAutoHotkey Password Stealer Targeting US and Canadian Bank Users

Introducing an Anonymous Phone Carrier That Only Requires Your Zip Code for Signup

Emerging Privacy Solutions in Telecommunications Raise Questions About Cybersecurity In the evolving landscape of telecommunications, a new venture named Phreeli is gaining attention for its promise of enhanced privacy for users. Wilcox, an advocate for consumer privacy, reflects on his long-standing efforts to maintain anonymity in an age of data…

Read MoreIntroducing an Anonymous Phone Carrier That Only Requires Your Zip Code for Signup

Microsoft Reports SolarWinds Hackers Gained Access to Certain Source Code

Microsoft Confirms Source Code Access in SolarWinds Attack On Thursday, Microsoft disclosed that threat actors linked to the SolarWinds supply chain attack successfully accessed a limited number of internal accounts within the company. This unauthorized access allowed these sophisticated, nation-state actors to escalate their reach inside Microsoft’s internal network, although…

Read MoreMicrosoft Reports SolarWinds Hackers Gained Access to Certain Source Code

Security Update: Kohler’s Toilet Cameras Lack True End-to-End Encryption

A recent security incident involving an AI image creator startup has revealed alarming vulnerabilities, with an unsecured database exposing over a million user-generated images and videos. The majority of the compromised content consisted of explicit material, including sensitive and troubling depictions of minors. This breach raises significant concerns about user…

Read MoreSecurity Update: Kohler’s Toilet Cameras Lack True End-to-End Encryption