Threat hunters at Symantec are calling global attention to a new, highly sophisticated piece of malware being used by a Chinese threat actor to burrow into — and hijack data from — government and critical infrastructure targets.
CISA, FBI Issue Warnings on WhisperGate, HermeticWiper Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) released indicators of compromise to help threat hunters look for signs of WhisperGate and HermeticWiper, two destructive malware files seen in recent attacks against organizations in Ukraine.
Nigerian Admits in US Court to Hacking Payroll Company
A Nigerian national pleaded guilty in a U.S. court for his role in a scheme to hack into thousands of user accounts maintained by a payroll processing company, to steal payroll deposits.
Cloudflare Plans to Acquire Email Security Startup Area 1
Web infrastructure and DDoS mitigation firm Cloudflare has announced plans to purchase Area 1, a Kleiner-Perkins-backed startup doing business in the competitive email security space.
Shadowserver Starts Conducting Daily Scans to Help Secure ICS
The Shadowserver Foundation this week announced that it has started conducting daily internet scans in an effort to identify exposed industrial control systems (ICS) and help organizations reduce their exposure to attacks.
SecurityWeek to Host 2022 Attack Surface Management Summit Today
Security Leaders Will Walk Away from Virtual Event with New Strategies to Get Ahead of Attackers
MDR Vendor eSentire Banks $325M at ‘Unicorn’ Valuation
Canadian cybersecurity vendor eSentire has scored $325 million in new financing at a heady valuation north of a billion dollars.
CISA Warns Critical Infrastructure Organizations of Foreign Influence Operations
Newly published guidance from the United States Cybersecurity and Infrastructure Security Agency (CISA) provides critical infrastructure organizations with instructions on how to prepare for and mitigate foreign influence operations.
European Cybersecurity Agencies Issue Resilience Guidance for Decision Makers
The European Union Agency for Cybersecurity (ENISA) and the European Union’s Computer Emergency Response Team (CERT-EU) last week published a set of best practices to help organizations boost their cyber resilience.
CISA Creates List of Free Cybersecurity Tools and Services for Defenders
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday announced that it has compiled a list of free cybersecurity tools and services that can help organizations reduce risk and improve resilience.













