Singapore Banks to Phase Out OTPs for Online Logins Within 3 Months – OfficialSarkar

Singapore Banks to Phase Out OTPs for Online Logins Within 3 Months – OfficialSarkar

Jul 15, 2024NewsroomCybersecurity / Mobile Security Retail banking institutions in Singapore have three months to phase out the use of one-time passwords (OTPs) for authentication purposes when signing into online accounts to mitigate the risk of phishing attacks. The decision was announced by the Monetary Authority of Singapore (MAS) and The Association of Banks in…

New HardBit Ransomware 4.0 Uses Passphrase Protection to Evade Detection – OfficialSarkar

New HardBit Ransomware 4.0 Uses Passphrase Protection to Evade Detection – OfficialSarkar

Jul 15, 2024NewsroomNetwork Security / Data Protection Cybersecurity researchers have shed light on a new version of a ransomware strain called HardBit that comes packaged with new obfuscation techniques to deter analysis efforts. “Unlike previous versions, HardBit Ransomware group enhanced the version 4.0 with passphrase protection,” Cybereason researchers Kotaro Ogino and Koshi Oyama said in…

AT&T Confirms Data Breach Affecting Nearly All Wireless Customers – OfficialSarkar

AT&T Confirms Data Breach Affecting Nearly All Wireless Customers – OfficialSarkar

American telecom service provider AT&T has confirmed that threat actors managed to access data belonging to “nearly all” of its wireless customers as well as customers of mobile virtual network operators (MVNOs) using AT&T’s wireless network. “Threat actors unlawfully accessed an AT&T workspace on a third-party cloud platform and, between April 14 and April 25,…

DarkGate Malware Exploits Samba File Shares in Short-Lived Campaign – OfficialSarkar

DarkGate Malware Exploits Samba File Shares in Short-Lived Campaign – OfficialSarkar

Jul 12, 2024NewsroomMalware / Cyber Attack Cybersecurity researchers have shed light on a short-lived DarkGate malware campaign that leveraged Samba file shares to initiate the infections. Palo Alto Networks Unit 42 said the activity spanned the months of March and April 2024, with the infection chains using servers running public-facing Samba file shares hosting Visual…

Australian Defence Force Private and Husband Charged with Espionage for Russia – OfficialSarkar

Australian Defence Force Private and Husband Charged with Espionage for Russia – OfficialSarkar

Jul 12, 2024NewsroomCyber Crime / Online Safety Two Russian-born Australian citizens have been arrested and charged in the country for spying on behalf of Russia as part of a “complex” law enforcement operation codenamed BURGAZADA. This includes a 40-year-old woman, an Australian Defence Force (ADF) Army Private, and her husband, a 62-year-old self-employed laborer. Media…

Critical Exim Mail Server Vulnerability Exposes Millions to Malicious Attachments – OfficialSarkar

Critical Exim Mail Server Vulnerability Exposes Millions to Malicious Attachments – OfficialSarkar

Jul 12, 2024NewsroomVulnerability / Software Security A critical security issue has been disclosed in the Exim mail transfer agent that could enable threat actors to deliver malicious attachments to target users’ inboxes. The vulnerability, tracked as CVE-2024-39929, has a CVSS score of 9.1 out of 10.0. It has been addressed in version 4.98. “Exim through…

Ever Wonder How Hackers Really Steal Passwords? Discover Their Tactics in This Webinar – OfficialSarkar

Ever Wonder How Hackers Really Steal Passwords? Discover Their Tactics in This Webinar – OfficialSarkar

Jul 12, 2024The Hacker NewsDigital Security / Online Safety In today’s digital age, passwords serve as the keys to our most sensitive information, from social media accounts to banking and business systems. This immense power brings with it significant responsibility—and vulnerability. Most people don’t realize their credentials have been compromised until the damage is done….

U.S. Seizes Domains Used by AI-Powered Russian Bot Farm for Disinformation – OfficialSarkar

U.S. Seizes Domains Used by AI-Powered Russian Bot Farm for Disinformation – OfficialSarkar

The U.S. Department of Justice (DoJ) said it seized two internet domains and searched nearly 1,000 social media accounts that Russian threat actors allegedly used to covertly spread pro-Kremlin disinformation in the country and abroad on a large scale. “The social media bot farm used elements of AI to create fictitious social media profiles —…

60 New Malicious Packages Uncovered in NuGet Supply Chain Attack – OfficialSarkar

60 New Malicious Packages Uncovered in NuGet Supply Chain Attack – OfficialSarkar

Jul 11, 2024NewsroomSoftware Security / Threat Intelligence Threat actors have been observed publishing a new wave of malicious packages to the NuGet package manager as part of an ongoing campaign that began in August 2023, while also adding a new layer of stealth to evade detection. The fresh packages, about 60 in number and spanning…

Palo Alto Networks Patches Critical Flaw in Expedition Migration Tool – OfficialSarkar

Palo Alto Networks Patches Critical Flaw in Expedition Migration Tool – OfficialSarkar

Jul 11, 2024NewsroomVulnerability / Enterprise Security Palo Alto Networks has released security updates to address five security flaws impacting its products, including a critical bug that could lead to an authentication bypass. Cataloged as CVE-2024-5910 (CVSS score: 9.3), the vulnerability has been described as a case of missing authentication in its Expedition migration tool that…