Apple’s security response engine revved into high gear Monday with patches for security defects in a wide range of products, including fixes for a pair of critical macOS kernel vulnerabilities already being exploited in the wild.
New Cyberespionage Group ‘Worok’ Targeting Entities in Asia
Cybersecurity firm ESET has detailed a new cyberespionage group targeting high-profile private and public entities in Asia and Africa since 2020.
Montenegro Wrestles With Massive Cyberattack, Russia Blamed
At the government headquarters in NATO-member Montenegro, the computers are unplugged, the internet is switched off and the state’s main websites are down. The blackout comes amid a massive cyberattack against the small Balkan state which officials say bears the hallmark of pro-Russian hackers and its security services.
Albania Suffers Renewed Cyberattack, Blames Iran
Albania has suffered a renewed cyberattack, the country’s interior ministry said on Saturday, blaming Iran which Tirana also accused of an earlier assault on its digital systems.
Iran Strongly Condemns US Sanctions Over Albania Hacking
Iran on Saturday strongly condemned a US decision to impose sanctions on its intelligence ministry, blamed for a major cyber attack on NATO ally Albania.
US Slaps Fresh Sanctions on Iran over Albania Cyberattacks
The U.S. Treasury Department on Friday slapped a fresh round of sanctions against entities in Iran for engaging in destructive cyberattacks against critical infrastructure targets in allied NATO countries.
Microsoft Dives Into Iranian Ransomware APT Attacks
Microsoft has published an analysis of the ransomware attacks associated with a subgroup of the Iran-linked advanced persistent threat (APT) actor Phosphorus.
Microsoft: Multiple Iranian Groups Conducted Cyberattack on Albanian Government
Multiple Iranian hacking groups participated in a recent cyberattack targeting the Albanian government, according to new data from Microsoft’s security research and response teams.
North Korea’s Lazarus Targets Energy Firms With Three RATs
For roughly six months, the North Korean Lazarus hacking group has been targeting energy companies in Canada, the US, and Japan with three remote access trojans (RATs), Cisco reports.
US Gov Issues Guidance for Developers to Secure Software Supply Chain
Three U.S. government agencies — Cybersecurity and Information Security Agency (CISA), the National Security Agency (NAS) and the Office of the Director of National Intelligence (ODNI) — have announced the release of the first part of a three-part joint guidance on securing the software supply chain.


