loader image
US Sanctions Aeza for Hosting Ransomware Gangs

The U.S. Treasury Department on Monday imposed sanctions on the Russia-based Aeza Group, accusing the company of providing infrastructure for cybercriminal operations. The move, part of a broader effort to disrupt global cybercrime networks, comes as US sanctions Aeza Hosting for allegedly supporting ransomware and infostealer campaigns. Authorities say Aeza Group offered “bulletproof hosting” services […]

Microsoft Adds Share, Click to Do in Windows Update

Microsoft has begun rolling out the KB5058499 preview cumulative update for Windows 11 version 24H2, introducing 48 new features and improvements. Among the most notable additions are the enhanced Windows Share functionality and the new Click to Do Preview, both designed to streamline user productivity and interaction. The update is part of a gradual deployment […]

US Seeks to Seize $7.7M Tied to North Korean Hackers

The U.S. government has filed a forfeiture complaint to seize $7.7 million in funds allegedly laundered by North Korean IT workers, according to federal authorities. The money, which has been frozen for over two years, is believed to be tied to operations conducted by individuals working on behalf of North Korea through covert employment in […]

Honeywell Unveils AI Tools to Boost OT Cybersecurity

Honeywell unveiled a new suite of artificial intelligence-powered cybersecurity tools aimed at strengthening operational technology (OT) environments and supporting the transition toward industrial autonomy. The tools are designed to accelerate autonomous operations by enhancing cyber resilience across critical infrastructure and manufacturing systems, according to a company announcement. The AI-driven solutions are tailored for industrial sectors […]

GAO Faults DHS Cyber Program, Urges Security Fixes

The U.S. Government Accountability Office (GAO) has identified critical shortcomings in the guidance of the Continuous Diagnostics and Mitigation (CDM) Program, raising concerns over the effectiveness of federal network security and data protection efforts. In a recent review, the GAO urged the Department of Homeland Security (DHS) to address these gaps to better safeguard government […]

Fortinet Firewall API Flaw Hits Dark Web for $12,000

A threat actor is allegedly selling a Fortinet Firewall API Flaw exploit tool on a dark web marketplace, raising alarms across the cybersecurity sector. Priced at $12,000 and supported by escrow services, the tool reportedly targets over 170 unsecured FortiOS API endpoints, granting unauthorized access to sensitive data on vulnerable FortiGate firewall systems. Leaked forum […]

Microsoft Bug Makes OneDrive Searches Show Nothing

Microsoft has alerted users to a disruptive issue affecting its cloud storage platform, OneDrive. A Microsoft bug makes OneDrive’s search function display blank results, even though the files remain accessible through direct navigation. The company is investigating the issue but has not released a timeline for resolution or a temporary fix. The Microsoft bug makes […]

Apple Marks Perth Store Launch With New Wallpaper

Apple is celebrating the opening of its newest retail location in Perth, Australia, by releasing a custom-designed wallpaper featuring local flora. As Apple marks the Perth Store launch, the company offers the wallpaper in three different resolutions, making it suitable for a range of devices, including desktops and mobile screens. The high-resolution image showcases the […]

Qilin Ransomware Adds Legal Threat in Data Extortion

Qilin ransomware-as-a-service operators have introduced a new feature called “Call lawyer” to boost pressure on victims as part of their data extortion campaigns. The move comes amid rising enforcement actions against several high-profile ransomware groups, including ALPHV/BlackCat, LockBit, Everest, RansomHub, and BlackLock. By offering legal-themed communication tools, Qilin Ransomware Adds Legal pressure tactics that may […]

Kelly Benefits Data Breach Hits 550,000 Customers

Kelly & Associates Insurance Group, operating as Kelly Benefits, has disclosed a data breach that compromised the personal information of approximately 550,000 individuals. The Kelly Benefits data breach, which occurred earlier in 2024, has prompted the company to begin notifying affected customers about the exposure of their sensitive data. The company has not specified the […]

APT41 Hides Malware in Google Calendar Traffic

Chinese state-sponsored hacking group APT41 is deploying a new malware strain dubbed “ToughProgress” that exploits Google Calendar for covert command-and-control (C2) communication, according to cybersecurity analysts. The malicious software uses the popular cloud-based scheduling service to blend its traffic with legitimate operations, making detection significantly more challenging. By embedding commands within calendar event data, the […]

Russia-Linked Wiper Hits Ukraine Infrastructure Again

A newly identified strain of data-wiping malware, dubbed PathWiper, has been detected targeting critical infrastructure in Ukraine, according to cybersecurity researchers. The malicious software exhibits characteristics similar to previous wipers associated with Sandworm, a hacking group linked to disruptive cyber operations. The attack marks another instance of destructive malware being deployed against Ukrainian systems amid […]