Tag

Cyberattacks

All articles tagged with #cyberattacks

Trump authorizes private firms to wage state-backed cyber offensives against criminal networks
national-security10 days ago

Trump authorizes private firms to wage state-backed cyber offensives against criminal networks

President Donald Trump signed an order authorizing select private companies to carry out government-sponsored cyberattacks against foreign criminal hacking groups, a shift from the traditional approach that reserved such actions for U.S. intelligence and defense agencies. The plan includes a DOJ-DHS coordination center to oversee participating firms and aims to disrupt cybercrime, but it raises potential legal and geopolitical risks and explicitly excludes operations against foreign governments.

Putin May Probe NATO Resolve With Hybrid Attacks, US Intel Warns
world15 days ago

Putin May Probe NATO Resolve With Hybrid Attacks, US Intel Warns

US intelligence warns Putin could authorize deniable hybrid actions—such as cyberattacks and other covert measures—onto NATO territory to test alliance cohesion and Western willingness to respond, a move seen as probing Western resolve rather than triggering a full-scale war; officials point to recent Baltic incursions and drone incidents as context, while NATO leaders stress the alliance’s commitment to collective defense.

politics24 days ago

Trump points finger at Walz as Iran-linked water hacks widen

Trump blamed Gov. Walz for Minnesota’s water-hacking incidents, while FBI, EPA and CISA warn of a broader campaign likely tied to Iran. Minnesota reports breaches at about 30 community water systems, with advisories urging operators to take vulnerable PLCs offline and issue boil-water notices as investigators examine a growing, multi-state threat to U.S. water infrastructure.

UK spy chief warns Russia relentlessly targets Britain's digital backbone
world3 months ago

UK spy chief warns Russia relentlessly targets Britain's digital backbone

Britain’s top intelligence official from GCHQ warns that Russia is relentlessly targeting the UK and Europe’s critical infrastructure, democratic processes, supply chains and public trust, accusing Moscow of stealing technology and plotting sabotage and assassination attempts. The director, Anne Keast-Butler, urges cybersecurity to be made dramatically more urgent as AI advances tighten the competitive landscape, and she emphasizes the need for stronger international partnerships to counter growing gray-zone cyber threats.

AI Accelerates Cyberattacks Across the Kill Chain, Microsoft Warns
cybersecurity5 months ago

AI Accelerates Cyberattacks Across the Kill Chain, Microsoft Warns

Microsoft's Threat Intelligence report finds threat actors are using generative AI to speed up and scale cyberattacks across the entire lifecycle—drafting phishing emails, creating malware, developing infrastructure, and fabricating realistic identities for remote‑worker schemes—while defenders should strengthen identity, detect credential abuse, and secure AI systems; the trend is echoed by Google and Amazon.

Identity as the Perimeter: The Hidden Gate in Cyber Breaches
technology6 months ago

Identity as the Perimeter: The Hidden Gate in Cyber Breaches

A sponsored Visual Capitalist infographic (in partnership with Unit 42 by Palo Alto Networks) outlines how cyberattackers breach systems by exploiting identity. Identity-based techniques drive about 65% of initial access, with social engineering and credential misuse leading the way, and 90% of recent investigations showing identity weaknesses as material. Once inside, over-privileged identities and token abuse enable rapid lateral movement, making identity the practical perimeter. Defenses recommended include phishing-resistant MFA (passkeys/FIDO2), rotating machine credentials, shorter sessions, just-in-time elevation for admins, and cross-cloud identity telemetry to detect unusual access chains.

China Launches Over 2.6 Million Daily Cyberattacks on Taiwan in 2025
world7 months ago

China Launches Over 2.6 Million Daily Cyberattacks on Taiwan in 2025

The NSB reports a significant increase in Chinese cyberattacks on Taiwan's critical infrastructure in 2025, with attacks averaging 2.63 million daily attempts, especially targeting energy and emergency sectors, employing tactics like vulnerability exploitation, DDoS, social engineering, and supply chain attacks, involving major hacker groups and international cooperation to enhance cybersecurity defenses.

Top Password Blunders and Risks in 2025
technology9 months ago

Top Password Blunders and Risks in 2025

The article highlights various high-profile security failures caused by weak passwords, including a Louvre CCTV breach, a US pipeline ransomware attack, nuclear launch code vulnerabilities, a UK business collapse due to hacking, and scandals involving phone hacking and political data breaches, emphasizing the importance of strong, unique passwords and layered security measures.

Harnessing AI for Enhanced Security and Defense
technology10 months ago

Harnessing AI for Enhanced Security and Defense

Advancements in AI are enabling hackers to launch faster, smarter, and more personalized cyberattacks, posing significant threats to critical infrastructure, financial services, and organizations worldwide. While malicious actors are leveraging AI for malicious purposes, cybersecurity professionals are also using AI to enhance defenses, automate threat detection, and respond more effectively, creating a high-stakes race between attackers and defenders.

Russian Hackers Exploit WinRAR Zero-Day to Spread RomCom Malware
cybersecurity1 year ago

Russian Hackers Exploit WinRAR Zero-Day to Spread RomCom Malware

Russia-linked attackers exploited a high-severity WinRAR vulnerability (CVE-2025-8088) before it was patched, using targeted spearphishing campaigns against European and Canadian companies. The vulnerability involves a path-traversal flaw that was exploited via malicious archives containing ADSes, leading to malware deployment and backdoors like Mythic, SnipBot, and RustyClaw. Multiple threat groups, including RomCom and Paper Werewolf, have used this zero-day in targeted attacks, highlighting the importance of timely updates and vigilance.

Urgent FBI Warning: Airlines and Cybercriminals in the Crosshairs
technology1 year ago

Urgent FBI Warning: Airlines and Cybercriminals in the Crosshairs

A group of young cybercriminals called Scattered Spider is increasingly active in launching sophisticated cyberattacks across various sectors, including retail, insurance, and airlines, primarily using social engineering and ransomware tactics. Despite law enforcement efforts, the group remains resilient and poses a significant threat to critical infrastructure, operating within a broader marketplace of cybercriminal services.