Tag: Cybersecurity

FBI warns AI hackers are impersonating US officials to infiltrate government (Interesting Engineering)

The FBI has issued a warning about a growing cyber campaign that uses AI-generated voice and text messages to impersonate senior U.S. government officials....

Lawmakers push for reauthorization of cyber information sharing bill as deadline looms (Suzanne Smalley – The Record)

A bipartisan group of lawmakers sitting on a key cybersecurity subcommittee uniformly argued Thursday for an imminent reauthorization of a key cybersecurity information sharing...

Counting the costs: A cybersecurity metrics framework for policy (Stewart Scott – Atlantic Council)

US cybersecurity policy has a critical blind spot: the absence of reliable outcome metrics that can inform policymakers about whether the digital ecosystem is...

Noem calls for reauthorization of cyberthreat information sharing law during RSA keynote (Jonathan Greig – The Record)

U.S. Secretary of Homeland Security Kristi Noem urged Congress on Tuesday to reauthorize a 10-year-old law that encourages businesses to share information about ongoing...

UK officials warn lawmakers of ‘turbulence’ at US cyber agencies, but say partnership will prevail (Alexander Martin – The Record)

Lawmakers on Britain’s national security committee heard on Tuesday how the United States was risking its own security by politicizing and potentially downsizing its...

Krebs: People should be ‘outraged’ at efforts to shrink federal cyber efforts (Martin Matishak – The Record)

Former Cybersecurity and Infrastructure Security Agency chief Chris Krebs on Monday said the larger security community should be “absolutely outraged” at the Trump administration’s...

Governments Warn Iran Is Targeting Microsoft and Fortinet Flaws to Plant Ransomware (Mariam Baksh, Nextgov)

The cybersecurity agencies of the U.S., U.K. and Australia are urging critical infrastructure organizations to patch vulnerabilities in Microsoft and Fortinet products that they...

The Biden administration will work with 30 countries to curb global cybercrime (Pierluigi Paganini, Security Affrairs)

The Biden administration announced it will work with 30 countries, including NATO allies and G7 partners, to curb global cybercrime. The Biden administration will work...

Bitdefender released free REvil ransomware decryptor that works for past victims (Pierluigi Paganini, Security Affairs)

Researchers from Bitdefender released a free master decryptor for the REvil ransomware operation that allows past victims to recover their files for free Bitdefender released...

Cybersecurity. Vulnerabilità dannosa per milioni di dispositivi IoT scoperta da FireEye (Barbara Tomasi, Tech From The Net)

FireEye ha scoperto una vulnerabilità critica che da remoto può colpire milioni di dispositivi IoT che utilizzano la rete ThroughTek “Kalay” e i loro...

Cybersecurity. Vermilion Strike, a Linux implementation of Cobalt Strike Beacon used in attacks (Pierluigi Paganini, Security Affairs)

Researchers discovered Linux and Windows implementations of the Cobalt Strike Beacon developed by attackers that were actively used in attacks in the wild Vermilion Strike, a Linux...

Cybersecurity. Popular NPM package Pac-Resolver affected by a critical flaw (Pierluigi Paganini, Security Affairs)

Experts found a critical flaw, tracked as CVE-2021-23406, in the popular NPM package ‘Pac-Resolver‘ that has millions of downloads every week Popular NPM package Pac-Resolver affected...

Cybersecurity. Apple fixes actively exploited FORCEDENTRY zero-day flaws (Pierluigi Paganini, Security Affairs)

Apple released security patches to fix two zero-day vulnerabilities in iOS and macOS that are actively exploited in attacks in the wild Apple fixes actively...

Cybersecurity. Facebook announces WhatsApp end-to-end encrypted (E2EE) backups (Pierluigi Paganini, Security Affairs)

Facebook announced it will allow WhatsApp users to encrypt their message history backups in the cloud Facebook announces WhatsApp end-to-end encrypted (E2EE) backupsSecurity Affairs

Cybersecurity. New Spook.Js attack allows to bypass Google Chrome Site Isolation protections (Pierluigi Paganini, Security Affairs)

Spook.js is a new side-channel attack on modern processors that can allow bypassing Site Isolation protections implemented in Google Chrome Spook.Js attack allows to bypass Google...

Cybersecurity. BlackMatter ransomware gang hit Technology giant Olympus (Pierluigi Paganini, Security Affairs)

Technology giant Olympus announced it was the victim of a ransomware attack and is currently investigating the extent of the incident BlackMatter ransomware gang hit...