North Korean state-sponsored APT group Lazarus has launched a cyberespionage campaign leveraging fraudulent Coinbase job postings in an effort to infect Apple- and Intel-based systems with macOS malware, according to Threatpost.
BleepingComputer reports that BlackByte ransomware has reappeared to promote a new Tor data leak site that features similar extortion techniques as the LockBit ransomware operation.
More threat actors have used disk-wiping malware in cyberattacks since the beginning of the ongoing war between Russia and Ukraine, with Ukrainian government, military, and private entities having been targeted with at least seven new major wiper variants, according to VentureBeat.
TechRepublic reports that industrial facilities were targeted by 32% of all USB-based cybersecurity threats this year, with USB-based malware attacks against the industry rising from 37% in 2021 to 52% in 2022.
BleepingComputer reports that a Counter-Strike 1.6 server has been subjected to distributed denial-of-service attacks facilitated by 12 malicious Python packages with names resembling popular packages, such as TensorFlow, ipaddress, and Gensim.
This week Dr. Doug talks: UEFI, PyPI, vishing, VNC, Sova, Doom, Mailchimp, hiding photos, and is joined by Jason Wood on this episode of Security Weekly News!
Sophos researchers have discovered that the LockBit, Hive, and BlackCat ransomware operations have simultaneously attacked an unnamed organization, ZDNet reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.