Top 10 Critical Pentest Findings 2024: What You Need to Know https://firewall.firm.in/wp-content/uploads/2024/06/pentest.png One of the most effective ways for information technology (IT) professionals to uncover a company’s weaknesses before the bad guys do is penetration testing. By simulating real-world cyberattacks, penetration testing, sometimes called pentests, provides invaluable insights into an organization’s security posture, revealing weaknesses that could potentially lead to ...
Read More »Vulnerabilities & Exploits
Sticky Werewolf Expands Cyber Attack Targets in Russia and Belarus
Sticky Werewolf Expands Cyber Attack Targets in Russia and Belarus https://firewall.firm.in/wp-content/uploads/2024/06/malware.png Jun 10, 2024NewsroomCyber Espionage / Malware Cybersecurity researchers have disclosed details of a threat actor known as Sticky Werewolf that has been linked to cyber attacks targeting entities in Russia and Belarus. The phishing attacks were aimed at a pharmaceutical company, a Russian research institute dealing with microbiology and ...
Read More »Researchers Uncover RAT-Dropping npm Package Targeting Gulp Users
Researchers Uncover RAT-Dropping npm Package Targeting Gulp Users https://firewall.firm.in/wp-content/uploads/2024/06/npm.png Jun 03, 2024NewsroomSoftware Security / Supply Chain Cybersecurity researchers have uncovered a new suspicious package uploaded to the npm package registry that’s designed to drop a remote access trojan (RAT) on compromised systems. The package in question is glup-debugger-log, which targets users of the gulp toolkit by masquerading as a “logger ...
Read More »Mysterious Cyber Attack Took Down 600,000+ Routers in the U.S.
Mysterious Cyber Attack Took Down 600,000+ Routers in the U.S. https://firewall.firm.in/wp-content/uploads/2024/05/soho.png May 31, 2024NewsroomNetwork Security / Cyber Attack More than 600,000 small office/home office (SOHO) routers are estimated to have been bricked and taken offline following a destructive cyber attack staged by unidentified cyber actors, disrupting users’ access to the internet. The mysterious event, which took place between October 25 ...
Read More »Indian National Pleads Guilty to $37 Million Cryptocurrency Theft Scheme
Indian National Pleads Guilty to $37 Million Cryptocurrency Theft Scheme https://firewall.firm.in/wp-content/uploads/2024/05/fraud.png An Indian national has pleaded guilty in the U.S. over charges of stealing more than $37 million by setting up a website that impersonated the Coinbase cryptocurrency exchange platform. Chirag Tomar, 30, pleaded guilty to wire fraud conspiracy, which carries a maximum sentence of 20 years in prison and ...
Read More »Beware: These Fake Antivirus Sites Spreading Android and Windows Malware
Beware: These Fake Antivirus Sites Spreading Android and Windows Malware https://firewall.firm.in/wp-content/uploads/2024/05/malware.png May 24, 2024NewsroomMalvertising / Endpoint Security Threat actors have been observed making use of fake websites masquerading as legitimate antivirus solutions from Avast, Bitdefender, and Malwarebytes to propagate malware capable of stealing sensitive information from Android and Windows devices. “Hosting malicious software through sites which look legitimate is predatory ...
Read More »Experts Find Flaw in Replicate AI Service Exposing Customers’ Models and Data
Experts Find Flaw in Replicate AI Service Exposing Customers’ Models and Data https://firewall.firm.in/wp-content/uploads/2024/05/wiz.png May 25, 2024NewsroomMachine Learning / Data Breach Cybersecurity researchers have discovered a critical security flaw in an artificial intelligence (AI)-as-a-service provider Replicate that could have allowed threat actors to gain access to proprietary AI models and sensitive information. “Exploitation of this vulnerability would have allowed unauthorized access ...
Read More »Hackers Created Rogue VMs to Evade Detection in Recent MITRE Cyber Attack
Hackers Created Rogue VMs to Evade Detection in Recent MITRE Cyber Attack https://firewall.firm.in/wp-content/uploads/2024/05/server.png May 24, 2024NewsroomEndpoint Security / Threat Intelligence The MITRE Corporation has revealed that the cyber attack targeting the not-for-profit company towards late December 2023 by exploiting zero-day flaws in Ivanti Connect Secure (ICS) involved the actor creating rogue virtual machines (VMs) within its VMware environment. “The adversary ...
Read More »Global cybercrime cost increased 12x faster than spending – ET CISO
Global cybercrime cost increased 12x faster than spending – ET CISO https://etimg.etb2bimg.com/thumb/msid-110278718,imgsize-29578,width-1200,height=765,overlay-etciso/cybercrime-fraud/global-cybercrime-cost-increased-12x-faster-than-spending.jpg The annual spending on cybersecurity is to hit $183 billion this year. As organizations continue to spend billions of dollars on cybersecurity each year to prevent their businesses from losing sensitive data and important figures, a new report on Monday revealed that the global cybercrime cost has increased ...
Read More »Researchers Warn of Chinese-Aligned Hackers Targeting South China Sea Countries
Researchers Warn of Chinese-Aligned Hackers Targeting South China Sea Countries https://firewall.firm.in/wp-content/uploads/2024/05/china.png Cybersecurity researchers have disclosed details of a previously undocumented threat group called Unfading Sea Haze that’s believed to have been active since 2018. The intrusion singled out high-level organizations in South China Sea countries, particularly military and government targets, Bitdefender said in a report shared with The Hacker News. ...
Read More »