Cryptocurrency platform users are being targeted by a massive phishing operation exploiting Microsoft Azure Web and Google Sites, according to BleepingComputer.
In the last year, the FDA has signaled that the responsibility of medical device security is moving to manufacturers, designing with security in mind; an effort that could address systemic issues.
An HP Wolf Security Threat Insights Report found that 14% of email-related malware discovered in companies’ systems had slipped past at least one email gateway security scan in the second quarter of 2022.
Microsoft confirmed Tuesday that the so-called “DogWalk” zero-day vulnerability has already been exploited and is urging all Windows users to apply the patch as soon as possible.
Individuals in Singapore selling through classified sites are being targeted by the expanded Classiscam credit card stealing campaign, which has already caused more than $29 million in damages from attacks against banks, delivery firms, cryptocurrency exchanges, and other service providers in the U.S., Europe, and Russia since 2019, according to BleepingComputer.
Bitter APT has been leveraging a trojanized iteration of the Signal messaging app to deploy the Android spyware Dracarys in cyberespionage campaigns against individuals in India, New Zealand, Pakistan, and the U.K., BleepingComputer reports.
BleepingComputer reports that the Cybersecurity and Infrastructure Security Agency has updated its Known Exploited Vulnerabilities Catalog to include the high-severity Windows Support Diagnostic Tool zero-day and UnRAR utility vulnerabilities following active exploitation in the wild.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.