Threat actors have launched a novel SQL server hacking campaign leveraging the built-in utility "sqlps.exe" to facilitate brute-force attacks and SuspSQLUsage malware deployment, The Hacker News reports.
In the Enterprise Security News: The latest cybersecurity fundraising, We discuss the impact of the market downturn on the cybersecurity startup industry, Crypto muggings, Security researchers researching researchers simulating attackers, & Evil Encryption!
The FBI issued an alert May 16 warning security teams that cyber actors were able to scrape credit card data from a U.S. business in January by injecting malicious PHP code into its online checkout page.
Microsoft announced Tuesday that its researchers observed the emergence of a threat type of malware that is collecting and exfiltrating data directly from cryptocurrency wallets.
Threat actors have leveraged more than 200 Android apps to deploy the Facestealer spyware, which has user credential and sensitive data exfiltrating capabilities.
In the Security News for this week: Singapore launches safety rating system for e-commerce sites, Watch Out for Zyxel Firewalls RCE Vulnerability, New Bluetooth hack that can unlock your Tesla, Hackers Compromise a String of NFT Discord Channels, a pentester’s attempt to be ‘as realistic as possible’ backfires, & more!
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.