Tech

DDoSers are using a potent new method to deliver attacks of unthinkable size

Enlarge (credit: Getty Images) Last August, academic researchers discovered a potent new method for knocking sites offline: a fleet of misconfigured servers more than 100,000 strong that can amplify floods of junk data to once-unthinkable sizes. These attacks, in many cases, could result in an infinite routing loop that causes a self-perpetuating flood of traffic. […]

Tech

After Ukraine recruits an “IT Army,” dozens of Russian sites go dark

Enlarge Cyberspace is feeling the strain of Russia’s deadly invasion of Ukraine: multiple sites tied to the Kremlin and its allies in Belarus have been unavailable to all or at least major parts of the Internet in recent days. The outages began last week with the defacement of Russian websites and picked up steam over […]

Tech

Russia’s most cut-throat hackers infect network devices with new botnet malware

Enlarge (credit: Getty Images) Hackers for one of Russia’s most elite and brazen spy agencies have infected home and small-office network devices around the world with a previously unseen malware that turns them into attack platforms that can steal confidential data plus target other networks. Cyclops Blink, as the advanced malware has been dubbed, has […]

Tech

Millions of WordPress sites get forced update to patch critical plugin flaw

Enlarge (credit: Getty Images) Millions of WordPress sites have received a forced update over the past day to fix a critical vulnerability in a plugin called UpdraftPlus. The mandatory patch came at the request of UpdraftPlus developers because of the severity of the vulnerability, which allows untrusted subscribers, customers, and others to download the site’s […]

Tech

VMware Horizon servers are under active exploit by Iranian state hackers

Enlarge (credit: Getty Images) Hackers aligned with the government of Iran are exploiting the critical Log4j vulnerability to infect unpatched VMware users with ransomware, researchers said on Thursday. Security firm SentinelOne has dubbed the group TunnelVision. The name is meant to emphasize TunnelVision’s heavy reliance on tunneling tools and the unique way it deploys them. […]

Tech

US says Russian state hackers lurked in defense contractor networks for months

Enlarge / What’s happened to Russia’s flag? (credit: Sean Gladwell / Getty Images) Hackers backed by the Russian government have breached the networks of multiple US defense contractors in a sustained campaign that has revealed sensitive information about US weapons-development communications infrastructure, the federal government said on Wednesday. The campaign began no later than January […]

Tech

Torrents of malicious junk traffic make Ukrainian websites unreachable

Enlarge (credit: Getty Images) Ukraine’s defense ministry and two banks were knocked offline on Tuesday by a flood of malicious traffic designed to prevent people from visiting the sites, Ukraine’s information security center said. The distributed denial-of-service attacks targeted the websites for Ukraine’s defense ministry, the Armed Forces of Ukraine, and two banks, Privatbank and […]

Tech

Researchers find threat group that has been active for 5 years

Enlarge / Warning: Data transfer in progress (credit: Yuri_Arcurs/Getty Images) Researchers on Tuesday revealed a new threat actor that over the past five years has blasted thousands of organizations with an almost endless stream of malicious messages designed to infect systems with data-stealing malware. TA2541, as security firm Proofpoint has named the hacking group, has […]

Tech

Researchers find threat group that has been active for 5 years

Enlarge / Warning: Data transfer in progress (credit: Yuri_Arcurs/Getty Images) Researchers on Tuesday revealed a new threat actor that over the past five years has blasted thousands of organizations with an almost endless stream of malicious messages designed to infect systems with data-stealing malware. TA2541, as security firm Proofpoint has named the hacking group, has […]

Tech

Hacking group is on a tear, hitting US critical infrastructure and SF 49ers

Enlarge (credit: Getty Images) A couple days after the FBI warned that a ransomware group called BlackByte had compromised critical infrastructure in the US, the group hacked servers belonging to the San Francisco 49ers football team and held some of the team’s data for ransom. Media representatives for the NFL franchise confirmed a security breach […]