News

Cybersecurity Weekly: Ledger account leak, SUPERNOVA malware, Citrix NetScaler attacks

Physical addresses of 270,000 Ledger owners were leaked on a hacker forum. A new SolarWinds flaw likely let hackers install SUPERNOVA malware. Attackers are abusing Citrix NetScaler devices to launch amplified DDoS attacks. All this, and more, in this week’s edition of Cybersecurity Weekly.

Cybersecurity Weekly: New SolarWinds backdoor found, affects Microsoft and VMWare

A new SUPERNOVA backdoor found in SolarWinds cyberattack analysis. Microsoft says its systems were also breached in the SolarWinds hack. VMware is the latest to confirm breach in SolarWinds hacking campaign. All this, and more, in this week’s edition of Cybersecurity Weekly.

Cybersecurity Weekly: PoC Kerberos exploit, Subway phishing scam, distance learning attacks

An expert published PoC exploit code for a Kerberos Bronze Bit attack. A massive Subway U.K. phishing attack is pushing TrickBot malware. The U.S. warns of increased cyberattacks against K-12 distance learning. All this, and more, in this week’s edition of Cybersecurity Weekly.

Cybersecurity Weekly: Software skimmer, Android app flaws, Google ad phish

Hackers hide software skimmer in social media sharing icons. Unpatched Android apps put millions of users at risk. MetaMask phishing steals cryptocurrency wallets via Google ads. All this, and more, in this week’s edition of Cybersecurity Weekly.

2020: The year's biggest hacks and cyberattacks

Just when you thought Halloween was over, it turns out there is something out there far scarier to security professionals around the world: the constant thre

Cybersecurity Weekly: Hackers for hire, DNS cache poisoning, The North Face attacked

APT hackers for hire target financial and entertainment firms. DNS cache poisoning attacks return due to Linux weakness. The North Face website suffered a credential stuffing attack. All this, and more, in this week’s edition of Cybersecurity Weekly.

Cybersecurity Weekly: Apple patches, job offer phishing, Cisco zero-day

Apple patched three actively exploited iOS zero-days. Hackers used Torisma spyware in job offer phishing attacks. A Cisco zero-day in AnyConnect Secure Mobility Client remains unpatched. All this, and more, in this week’s edition of Cybersecurity Weekly.

Cybersecurity Weekly: Wordpress patches, NAT bypasses, Windows zero-day

WordPress patches a three-year-old high-severity RCE bug. A new NAT bypass attack lets hackers access any TCP/UDP service. A Windows zero-day bug is being exploited in the wild. All this, and more, in this week’s edition of Cybersecurity Weekly.

Cybersecurity Weekly: Apple flaws, Azure vulnerabilities, hackers buying network access

Fifty-five new security flaws were reported in Apple software and services. Researchers find vulnerabilities in Microsoft Azure cloud service. Security staff are being forced to upskill in their own time. All this, and more, in this week’s edition of Cybersecurity Weekly.

Cybersecurity Weekly: Medical center cyberattack, Shopify breach, Emotet election phish

An Ohio medical center was offline following a security incident. Shopify announces a data breach affecting fewer than 200 merchants. The Emotet malware gang takes part in the 2020 U.S. elections. All this, and more, in this week’s edition of Cybersecurity Weekly.