Akamai researchers say the HinataBot botnet has been active for the first three months on 2023, but has exploited vulnerabilities from as far back as 2014.
BleepingComputer reports that government and government-related networks are being subjected to highly-targeted zero-day attacks leveraging a recently patched high-severity Fortinet FortiOS vulnerability, tracked as CVE-2022-41328, resulting in file and operating system corruption, as well as data loss.
Software supply chain attacks, those in which hackers target the "water supply" of software are on the rise. This makes software developers everywhere valid targets. We will discuss the developer perspective on software supply chain attacks. Segment Resources: https://in-toto.io https://sigstore.dev.
Amazon's security camera firm Ring has been purported to be compromised by the ALPHV ransomware operation, also known as BlackCat, which has threatened to expose the stolen data, reports Motherboard.
Vulnerable Oracle WebLogic servers are being subjected to cryptojacking attacks by the cryptomining operation 8220 Gang using the ScrubCrypt crypter, reports The Hacker News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.