Security news that informs and inspires

2248 articles by

OpenMetadata Bugs Enable Kubernetes Cryptomining Attacks

Threat actors have been exploiting known vulnerabilities in open-source platform OpenMetadata in order to access Kubernetes workloads and use them for cryptomining.

Kubernetes

UK Police Take Down LabHost Phishing Service

Europol and a collection of UK law enforcement agencies have disrupted the LabHost phishing platform, which targeted victims globally.

Ransomware, Labhost

Phishing Attack Targets LastPass Users’ Master Passwords

In order to convince LastPass users to hand over their passwords, attackers used a mix of phone calls, phishing emails and a phishing page under the domain “help-lastpass[.]com,” which has since been taken down.

Phishing

Decipher Podcast: Cody Stokes

Cody Stokes, a security leader at Procellis Technology, joins Dennis Fisher to talk about his time in the Marine Corps, the challenges of breaking into the cybersecurity field, and the fulfillment he gets from helping to protect users.

Podcast

Sandworm Group Shifts to Espionage Attacks, Hacktivist Personas

Recent activity by the well-known Sandworm group - which researchers with Mandiant have started calling APT44 - relies on a mix of espionage efforts and hacktivist personas.

APT