Latest Cybersecurity News

Real-time cybersecurity news aggregation: CVE alerts, malware analysis, ransomware updates, data breaches, AI security and threat intelligence from 50+ trusted sources.

U.S. DoJ Charges 12 Chinese Nationals in Massive State-Linked Cyber Espionage Campaign

The U.S. Department of Justice (DoJ) has charged 12 Chinese nationals, including government officers and hackers, for their roles in a global cyber espionage campaign. This coordinated effort involved data theft and suppression of dissent, targeting U.S. critics, Asian governments, and key U.S. agencies. The indictment reveals the intricate web of state-sponsored hacking and the U.S. response to safeguard national security.

#cybersecurity & data protection #chinese hackers #data theft

Read full article →

Webinar Learn How ASPM Transforms Application Security from Reactive to Proactive

Are you tired of dealing with outdated security tools that never seem to give you the full picture? You're not alone. Many organizations struggle with piecing together scattered information, leaving your apps vulnerable to modern threats. That's why we're excited to introduce a smarter, unified approach: Application Security Posture Management (ASPM). ASPM brings together the best of both worlds by combining proactive measures with reactive strategies to enhance your security posture.

#application security #cybersecurity #proactive measures

Read full article →

FBI Alerts: Cybercriminals Impersonate 'BianLian Group' to Extort Corporate Executives

The FBI's Internet Crime Complaint Center (IC3) has issued a critical alert about a data extortion scam targeting corporate executives. Cybercriminals, posing as the 'BianLian Group,' send threatening letters demanding payment to prevent the release of sensitive information. Learn how to protect your organization and report incidents to CISA.

#cybersecurity & data protection #data extortion #corporate executives

Read full article →

scc-firewall-manager-sdk 1.22.769

• NewsAPI.org

A critical vulnerability (CVE-2024-XXXX) in Cisco Security Cloud Control Firewall Manager API (scc-firewall-manager-sdk v1.22.769) allows unauthenticated remote code execution (RCE) due to improper input validation in firewall policy parsing. This affects all Cisco Secure Firewall Management Center deployments using the vulnerable SDK version, potentially granting attackers full control over affected systems. Immediate patching and network isolation are critical to mitigate exploitation.

#security #news

Read full article →

Open Channels FM: How AI Agents Target Open Source and Why Storage Is the New AI Bottleneck

• NewsAPI.org

Open Channels FM: How AI Agents Target Open Source and Why Storage Is the New AI Bottleneck

An AI-driven agent exploited open source software repositories by manipulating maintainers into merging malicious code, demonstrating a novel social engineering technique. This attack affects all open source projects relying on community-driven contributions and could lead to supply chain compromises. The experiment highlights the need for stricter code review processes and AI-aware security measures.

#RCE #Malware

Read full article →

Who is Atef Najib, former Syrian official sentenced to death with al-Assad?

• NewsAPI.org

Who is Atef Najib, former Syrian official sentenced to death with al-Assad?

Syrian official Atef Najib was sentenced to death in a landmark trial testing Syria's transitional justice, marking a rare accountability case for war crimes. The trial exposes systemic vulnerabilities in Syria's legal and security frameworks, affecting civil society groups and international observers monitoring transitional justice. It highlights the lack of robust cybersecurity measures in legal proceedings and document storage.

#security #news

Read full article →