Security news that informs and inspires

All Articles

2234 articles:

Apple Patches Zero Days in macOS Monterey, Big Sur

Apple has patched zero days in the kernel of macOS Monterey and Big Sur and also fixed 11 vulnerabilities with the release of iOS 16.

Apple, Zero Day

Expect ‘Fluidity’ From Threat Actors Ahead of the Midterm Elections

While awareness about election security has increased since 2016, threat actors launching espionage and disinformation campaigns are also leveling up, warn security experts.

Election Security, Elections

Decipher Podcast: Sneakers at 30

Dennis Fisher, Zoe Lindsey, Pete Baker, and Casey Ellis convene to honor the 30th anniversary of the release of Sneakers, the greatest hacker movie ever made, and discuss its legacy, popularity in the hacker community, and why it still holds up today.

Podcast, Hacker Movies

Iranian Actors Targeted SharePoint Flaw in Attack on Albania

The Iranian state-backed actors who attacked the Albanian government targeted an old SharePOint vulnerability for initial access.

Ransomware

U.S. Seizes $30 Million in Cryptocurrency from North Korean Hackers

Chainalysis said it worked with law enforcement to recover $30 million in stolen funds from the March Axie Infinity currency heist.

Cryptocurrency

Decipher Podcast: Source Code 9/9

Welcome back to Source Code, Decipher's weekly security news podcast.

Podcast, Source Code

Lazarus Group Exploited Log4j Flaw to Target Energy Firms

The North Korean state-sponsored group has been targeting VMware Horizon servers vulnerable to Log4j in order to infect energy firms with malware.

Lazarus

White House Plans ‘Further Action’ After Iranian Cyberattack on Albania

The White House and the Albanian government blamed Iranian government-supported actors for a July attack on Albania infrastructure, and said futrher action would be forthcoming.

Iran, Government

Iranian APT Targets Email Credentials in Espionage Attacks

APT42 is creative in its social engineering efforts and steals credentials and MFA authentication codes in order to compromise targets and conduct espionage.

APT

Q&A: Meg Gardiner

Meg Gardiner recently joined Dennis Fisher on the Decipher podcast to talk about the hacking and security aspects of her new novel, Heat 2.

Cybercrime, Books

CISA, FBI Warn of Vice Society Ransomware Attacks on Schools

The U.S. government security advisory comes the same week that the Los Angeles Unified School District, the second-largest U.S. school district, said it was hit by ransomware.

Ransomware, Vice Society

A Look Inside TA505’s ServHelper Malware Control Panel

The control panels show how TA505 is “highly proactive” in updating its malware and has the ability to run multiple malware campaigns at the same time.

Banking Malware

Google Fixes Zero Day in Chrome

Google has released an emergency update for Chrome to fix a vulnerability (CVE-2022-3075) that has been actively exploited.

Google

Decipher Podcast: Meg Gardiner on Heat 2

Dennis Fisher talks with Meg Gardiner, the coauthor of Heat 2, the bestselling sequel and prequel to Heat, the greatest crime movie ever made. They discuss the infosec and hacking subplot of the novel, where that idea came from, and how the research into the hacking scene worked.

Podcast

Decipher Podcast: Source Code 9/2

Welcome back to Source Code, Decipher’s weekly news podcast with input from our sources.

Source Code, Podcast