The US Cybersecurity and Infrastructure Security Agency (CISA) has added a critical SAP vulnerability to its Known Exploited Vulnerabilities Catalog less than one week after its details were disclosed at the Black Hat and Def Con hacker conferences.
North Korean Hackers Use Fake Job Offers to Deliver New macOS Malware
Researchers with cybersecurity company ESET have observed a new macOS malware sample developed by the infamous North Korean advanced persistent threat (APT) actor Lazarus.
Evasive ‘DarkTortilla’ Crypter Delivers RATs, Targeted Malware
Secureworks security researchers have analyzed ‘DarkTortilla’, a .NET-based crypter used to deliver both popular malware and targeted payloads.
81% of Malware Seen on USB Drives in Industrial Facilities Can Disrupt ICS: Honeywell
Google Patches Fifth Exploited Chrome Zero-Day of 2022
A Chrome 104 update announced by Google on Tuesday patches 11 vulnerabilities, including a zero-day that has been exploited in attacks.
Security Firms Find Over 20 Malicious PyPI Packages Designed for Data Theft
Security companies have identified more than 20 malicious PyPI packages designed to steal passwords and other sensitive information from the victims’ machines.
Weaponized PLCs Can Hack Engineering Workstations in Attacks on Industrial Orgs
Researchers have shown how hackers could weaponize programmable logic controllers (PLCs) and use them to exploit engineering workstations running software from several major industrial automation companies.
Chinese Cyberspies Use Supply Chain Attack to Deliver Windows, macOS Malware
China-linked cyberespionage group Iron Tiger was observed using the compromised servers of a chat application for the delivery of malware to Windows and macOS systems, Trend Micro reports.
CISA, FBI Warn Organizations of Zeppelin Ransomware Attacks
The US Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have issued a joint advisory detailing the Zeppelin ransomware.
Number of Ransomware Attacks on Industrial Orgs Drops Following Conti Shutdown
The number of ransomware attacks on industrial organizations decreased from 158 in the first quarter of 2022 to 125 in the second quarter, and it may be — at least partially — a result of the Conti operation shutting down.



