Security news that informs and inspires

2376 articles by

DHS Wants to Simplify Mishmash of Cyber Incident Reporting Guidelines

The DHS proposed a single cyber incident reporting portal in an effort to make the process of reporting a cyberattack easier.

DHS

New Threat Group Targets Middle Eastern Telcos

A new attack group named ShroudedSnooper is targeting telecom providers in Middle Eastern countries with custom tools called HTTPSnoop and PipeSnoop.

Malware

The Emergence of Security Flaws as a ‘National Resource’ in China

An Atlantic Council report looks at the impact of China's regulation - in effect now for two years - that requires organizations to submit notice of a software vulnerability to the Chinese government within two days of discovery.

Supply Chain

Iranian Threat Group Targets Cloud With Password Spraying Attacks

An Iran state-backed group called Peach Sandstorm is using password spraying attacks to target cloud environments in organizations across many industries.

Microsoft, Iran

DBatLoader Leverages OneDrive to Deliver Commodity Malware

The malware loader was recently observed in almost two dozen email campaigns that appeared to target English speakers and involved lures related to shipping orders and billing, invoice and purchase requests or inquiries.

Malware