Identity News & UpdatesNews & Updates

The United States and Singapore discuss cybersecurity cooperation.

The establishment of an annual discussion between Singapore and the United States was announced on Tuesday (Mar 29) as part of bolstering cybersecurity cooperation. Singapore Prime Minister Lee Hsien Loong is in the United States on a working visit. After attending a meeting in the White House, Singapore Prime Minister Lee Hsien Loong and US President Joe Biden released a joint…
Read more
Identity News & UpdatesNews & Updates

Ukrtelecom has been targeted by a "powerful" cyberattack

Ukrtelecom, Ukraine’s largest fixed-line telecommunications firm, has been targeted by a “powerful” cyberattack. It is considered to be the most lethal cyberattack since the Russian invasion began in February, and it has brought the company’s services across the country to a halt. Ukrtelecom CEO Yuriy Kurmaz said in a statement that a powerful hostile cyber attack was…
Read more
Identity News & UpdatesNews & Updates

Russia's Kaspersky and China's telecom firms join US' National Security threat list

On friday (March 25), the US Federal Communications Commission (FCC) included Russian cybersecurity company Kaspersky Labs, and Chinese communication firms China Telecom (Americas) Corp and China Mobile International USA Inc. to its list of service providers and communications equipment that can potentially threaten US national security. The official advisory released by FCC stated that…
Read more
Identity News & UpdatesNews & Updates

Gartner warns Midsize Enterprise CIOs

According to Gartner, many of the security concerns that MSEs face are similar to those that larger enterprises face. The rising usage of cloud applications, open-source code, the internet of things (IoT), and cyber-physical systems, for example, has increased attack surfaces. As a result of this, MSE administrators will have to secure a more complicated organizational environment. The…
Read more
Identity News & UpdatesNews & Updates

North Korean hackers use Chrome's zero-day to attack fintech, crypto and media firms

On 24th March (Thursday), Google’s threat analysis group (TAG) released a statement that disclosed details about the activity of two North Korean based hacker groups, who had exploited Chrome’s zero-day vulnerability to target several fintech, news media, IT and cryptocurrency firms. Previously, the attackers carried out two campaigns, namely Operation Dream Job and Operation Apple…
Read more
Identity News & UpdatesNews & Updates

Researchers have discovered a new phishing tactic

Passwords and other sensitive information can now be easily obtained using a variety of phishing methods. However, a new phishing tactic known as the BitB attack has recently been uncovered, and it is so perfectly crafted that most people would fall for it. This method entails creating a bogus pop-up login window that displays on a website. By combining HTML with CSS, threat actors create a…
Read more
Identity News & UpdatesNews & Updates

FBI sees Russian hackers eyeing US energy firms

Amidst the ongoing Ukraine-Russia war, the FBI has disclosed that there is a growing amount of interest shown by Russian hackers in US-based energy firms, although there are no signs of a cyberattack being planned for the time being. The FBI advisory accessed by Associated Press on Tuesday (March 22) also revealed that the Russian cyberattackers have examined atleast five energy companies for…
Read more
Identity News & UpdatesNews & Updates

Lapsus$ hack confirmed by Microsoft; Bing & Cortana source codes stolen.

LAPSUS$, a data extortion hacking group that recently targeted Nvidia and Samsung, has stated that it has also targeted Microsoft, LG, and Okta. According to El Chapuzas Informatico, around 90 percent of the information from Bing Maps was stolen in the Microsoft hacks, while approximately 45 percent was obtained from Bing and Cortana. The extortion group released a torrent for a 9 GB zip file…
Read more
Identity News & UpdatesNews & Updates

Ransomware-as-a-Service group targets critical US assets

In a recently released cybersecurity advisory, the FBI revealed that Avoslocker, the Ransomware-as-a-Service group that surfaced in mid-2021, was responsible for targeting US-based critical infrastructure across multiple sectors. The statement was jointly authored by the US Treasury Department and the Financial Crimes Enforcement Network (FinCEN). The press release also shed light on the modus…
Read more
Identity News & UpdatesNews & Updates

Phishing has become more untraceable with this novel technique

A new UI redressing technique, know as Browser In The Browser (BITB), has given phishing a shot in the arm by making such attacks nearly untraceable in their design. This method is used to steal login credentials by juxtaposing a realistic replica of a third-party SSO login window that is usually redirected by a website’s login page (Instagram, Facebook, Twitter etc.). For instance, if a…
Read more