As part of our Year in Review series, we examine how cyber attackers capitalized on security vulnerabilities that emerged with the rush to cloud-based, remote operations, and what security teams did to respond.
Thousands of Citrix ADC and Gateway instances could still be compromised by exploiting critical security vulnerabilities that have already been patched by Citrix, reports BleepingComputer.
The group - tracked as “BlueNoroff” by Kaspersky and “HiddenCobra” by others - registered at least 70 web domains over the last year mimicking the websites of real venture capital firms in Japan and other financial institutions to use in a newly uncovered spearphishing and malware-delivery campaign.
Significant activity during the past year has made the FIN7 hacking group, also known as Carbanak, a prominent force in the cybercrime landscape, with the operation having compromised more than 8,147 victims around the world, most of which were in the U.S., according to The Hacker News.
Seven security vulnerabilities have been discovered in Click Studios' Passwordstate enterprise password manager that could be exploited to compromise user passwords, according to SecurityWeek.
SecurityWeek reports that Chinese video surveillance firm Hikvision has issued firmware fixes for a critical flaw impacting two of its wireless bridge offerings, which could be exploited to facilitate remote CCTV hacking.
Cloud workload security suffers from several common security problems. Here are the best ways to protect your organization's assets, instances and workloads in the cloud.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.