NSA’s National Cyber Exercise Tests Teams’ Offensive and Defensive Skills – Homeland Security Today

NSA’s National Cyber Exercise Tests Teams’ Offensive and Defensive Skills – Homeland Security Today

The National Security Agency announced Thursday the kick-off of its 20th annual National Cyber Exercise (NCX), a three-day annual cyber competition that tests the offensive and defensive cybersecurity skills of participant teams from U.S. Service Academies and Senior Military Colleges as well as civilian interns from NSA’s cyber-focused development programs. NSA’s National Cyber Exercise (NCX)…

Hackers increasingly using web shells to steal credit cards

Hackers increasingly using web shells to steal credit cards

Global payments processor VISA warns that threat actors are increasingly deploying web shells on compromised servers to exfiltrate credit card information stolen from online store customers. Web shells are tools (scripts or programs) deployed by threat actors to gain and/or maintain access to hacked servers, remotely execute arbitrary code or commands, move laterally within a target’s…

Hackers increasingly using web shells to steal credit cards

Hackers increasingly using web shells to steal credit cards

Global payments processor VISA warns that threat actors are increasingly deploying web shells on compromised servers to exfiltrate credit card information stolen from online store customers. Web shells are tools (scripts or programs) deployed by threat actors to gain and/or maintain access to hacked servers, remotely execute arbitrary code or commands, move laterally within a target’s…

SAP partners with Onapsis to mitigate active threats against unprotected SAP applications – IT Security News

SAP partners with Onapsis to mitigate active threats against unprotected SAP applications – IT Security News

SAP partners with Onapsis to mitigate active threats against unprotected SAP applications – IT Security News 8. April 2021 SAP and Onapsis jointly released a cyber threat intelligence report providing actionable information on how malicious threat actors are targeting and potentially exploiting unprotected mission-critical SAP applications. The companies have worked in close partnership with the…

Collaboration Platforms Increasingly Abused for Malware Distribution, Data Exfiltration

Collaboration Platforms Increasingly Abused for Malware Distribution, Data Exfiltration

Threat actors are increasingly abusing collaboration platforms for nefarious purposes, including malware delivery and data exfiltration, security researchers with Cisco’s Talos division report. With the COVID-19 pandemic forcing many organizations to switch to telework, interactive communication platforms such as Discord and Slack saw increased adoption and adversaries didn’t wait long to start abusing these tools….

Fake Trezor app steals more than $1 million worth of crypto coins – Malwarebytes Labs

Fake Trezor app steals more than $1 million worth of crypto coins – Malwarebytes Labs

Several users of Trezor, a small hardware device that acts as a cryptocurrency wallet, have lost fortunes after being duped by a phishing app. Several users of Trezor, a small hardware device that acts as a cryptocurrency wallet, have been duped by a fake app with the same name. The app was available on Google…

Facebook Facing an Investigation by EU Regulators Following Data Leak

Facebook Facing an Investigation by EU Regulators Following Data Leak

Several days ago, we reported a large-scale data leak that affected 533 million Facebook accounts. The vulnerability that caused the data leak is now fixed. However, the social media platform is facing an investigation by EU regulators. The data breach was possible due to a vulnerability addressed by Facebook in 2019. Despite being two-years old,…

Facebook ads dropped malware posing as Clubhouse app for PC

Facebook ads dropped malware posing as Clubhouse app for PC

Upon clicking the ad, the user is taken to a fake Clubhouse app website that looks quite authentic but its download link drops malware. Last year, in two separate incidents hackers abused Facebook ads to phish 615,000 account credentials. Then, the infamous Ragnar Locker ransomware gang was found using Facebook ads to extort victims. Now…