Mon.Nov 25, 2024

article thumbnail

Malware campaign abused flawed Avast Anti-Rootkit driver

Security Affairs

Threat actors exploit an outdated Avast Anti-Rootkit driver to evade detection, disable security tools, and compromise the target systems. Trellix researchers uncovered a malware campaign that abused a vulnerable Avast Anti-Rootkit driver (aswArPot.sys) to gain deeper access to the target system, disable security solutions, and gain system control. This alarming tactic corrupts trusted kernel-mode drivers, transforming them into tools for terminating protective processes and compromising infecte

Access 272
article thumbnail

Russian Hackers Exploit WiFi in Sophisticated New Attack

Data Breach Today

'Nearest Neighbor Attack' Bypasses Cyber Defenses by Breaching WiFi Networks A Russian cyberespionage group hacked a Washington, D.C.-based organization focused on Ukraine by deploying a new attack technique that exploits Wi-Fi connectivity, according to new research. The "nearest neighbor attack: methodology could lead to a significant broadening of targeting and attacks.

310
310
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Russia-linked APT TAG-110 uses targets Europe and Asia

Security Affairs

Russia-linked threat actors TAG-110 employed custom malware HATVIBE and CHERRYSPY to target organizations in Asia and Europe. Insikt Group researchers uncovered an ongoing cyber-espionage campaign by Russia-linked threat actor TAG-110 that employed custom malware tools HATVIBE and CHERRYSPY. The campaign primarily targeted government entities, human rights groups, and educational institutions in Central Asia, East Asia, and Europe.

Military 299
article thumbnail

Tech winners and losers of 2024: For every triumph, a turkey

Collaboration 2.0

AI flourished, Arm chips dominated, and open source thrived. Meanwhile, Elon Musk gets credit for two of the biggest losers, and Apple makes it onto both the nice and naughty lists.

IT 290
article thumbnail

How to Start Virtual Care the Right Way: A Proven Roadmap for 2025 and Beyond

Speaker: Dr. Christine Gall, DrPH, MS, BSN, RN

The promise of virtual care is no longer theoretical and is now a critical solution to many of healthcare’s most urgent challenges. Yet many healthcare leaders remain unsure how to build a business case for investment and launching the right program at the right time can be the difference between value and failure. For organizations seeking a financially sound, clinically effective entry point, Virtual Patient Observation (VPO) offers a compelling case to lead with.

article thumbnail

Thai police arrested Chinese hackers involved in SMS blaster attacks

Security Affairs

Thai authorities arrested fraud gangs in Bangkok for SMS blaster attacks, they used fake cell towers to send thousands of malicious SMS messages to nearby phones. Thai authorities arrested members of two Chinese cybercrime organizations, one of these groups carried out SMS blaster attacks. The crooks were driving through Bangkok’s streets while sending hundreds of thousands of malicious SMS text messages to nearby cell phones. “One of these gangs had disguised themselves as a legitim

Phishing 311

More Trending

article thumbnail

Russia-linked threat actors threaten the UK and its allies, minister to say

Security Affairs

A senior UK minister will warn that Russia is preparing cyberattacks against the UK and its allies to undermine support for Ukraine. Russia may launch cyberattacks against the UK and its allies in retaliation for their support of Ukraine, Chancellor of the Duchy of Lancaster Pat McFadden is expected to state during a NATO meeting. Chancellor of the Duchy of Lancaster Pat McFadden is also responsible for National security, resilience, and civil contingencies.

IT 287
article thumbnail

This Google AI tool could be your new favorite study aid - and it's free

Collaboration 2.0

Part AI chatbot, part search engine, Google's experimental 'Learn About' tool is personalized to your learning needs. How to try it.

IT 267
article thumbnail

Zyxel firewalls targeted in recent ransomware attacks

Security Affairs

Zyxel warns that a ransomware group has been observed exploiting a recently patched command injection issue in its firewalls. Zyxel warns that a ransomware gang has been observed exploiting a recently patched command injection vulnerability, tracked as CVE-2024-42057, in its firewalls for initial compromise. Remote, unauthenticated attackers could exploit the flaw to execute OS commands on vulnerable devices.

article thumbnail

New York Fines Geico, Travelers $11.3M for Data Breaches

Data Breach Today

Fines Tied to Wave of 2021 Driver's License Number Theft New York state authorities fined auto insurance giant Geico $9.75 million for failing to protect customers' driver's license numbers during a wave of cyber incidents in early 2021. Travelers will pay $1.55 million after hackers used stolen credentials to flitch license numbers in mid-2021.

article thumbnail

From Curiosity to Competitive Edge: How Mid-Market CEOs Are Using AI to Scale Smarter

Speaker: Lee Andrews, Founder at LJA New Media & Tony Karrer, Founder and CTO at Aggregage

This session will walk you through how one CEO used generative AI, workflow automation, and sales personalization to transform an entire security company—then built the Zero to Strategy framework that other mid-market leaders are now using to unlock 3.5x ROI. As a business executive, you’ll learn how to assess AI opportunities in your business, drive adoption across teams, and overcome internal resource constraints—without hiring a single data scientist.

article thumbnail

I upgraded to Android 15 on my Pixel 9 Pro. Here are my 6 favorite features so far

Collaboration 2.0

Android 15 may not seem like a big change but these six features alone make it worth the upgrade.

IT 264
article thumbnail

US National Security Officials Brief Telecom Executives

Data Breach Today

National Security Officials Share Intelligence on a Cyberespionage Campaign The White House on Friday hosted U.S. telecommunications executives to review the country's cyber resilience posture and share intelligence pertaining to China's "significant cyberespionage campaign targeting the sector," which the FBI continues to probe.

Security 260
article thumbnail

Looking to lead technology teams in 2025? Follow this CDO's advice

Collaboration 2.0

There's a temptation to automate as much work as possible, but AI has some shortcomings - and not for the reasons many think.

257
257
article thumbnail

Experts Urge Sober Assessment of Russian Hacking

Data Breach Today

Speech by UK Minister Pat McFadden Sparks Backlash A warning from a British government official over Russian cyberwar sparked backlash from cybersecurity specialists who urged a measured approach.

article thumbnail

Agent Tooling: Connecting AI to Your Tools, Systems & Data

Speaker: Alex Salazar, CEO & Co-Founder @ Arcade | Nate Barbettini, Founding Engineer @ Arcade | Tony Karrer, Founder & CTO @ Aggregage

There’s a lot of noise surrounding the ability of AI agents to connect to your tools, systems and data. But building an AI application into a reliable, secure workflow agent isn’t as simple as plugging in an API. As an engineering leader, it can be challenging to make sense of this evolving landscape, but agent tooling provides such high value that it’s critical we figure out how to move forward.

article thumbnail

This surprisingly impressive Android tablet is $60 off for Black Friday

Collaboration 2.0

The Oukitel OT5 is a solid but cost-effective Android tablet that won't break the bank, especially since it's 20% off.

IT 255
article thumbnail

Medical Specialty Groups: Why Cybercriminals are After Them

Data Breach Today

Hacks on 2 Specialty Practices Are Latest on Increasingly Targeted Types of Groups An Illinois gastroenterology practice and a California pulmonary practice are among the latest medical specialty groups targeted by cybercriminals who claim to have their patients' sensitive health information. Attacks on such specialty healthcare practices appear to be rising, some experts said.

246
246
article thumbnail

Can your old PC handle the Windows 11 upgrade? How to find out - before you try

Collaboration 2.0

Next year, your old but still functional Windows 10 PC will no longer receive monthly security updates. Here's how to find out if you can safely squeeze a few more years out of it or if it's time to say goodbye.

Security 247
article thumbnail

Mysterious Elephant Using Hajj-Themed Bait in Attacks

Data Breach Today

Group Deploys Upgraded Malware Disguised as Microsoft File on Pilgrimage Goers A South Asian threat actor identified as Mysterious Elephant or APT-K-47 by Knownsec 404 researchers is using a Hajj-themed lure to trick victims into malicious payload disguised as a Windows file. The hacker is using upgraded Asyncshell malware disguised as a Microsoft Compiled HTML Help file.

238
238
article thumbnail

Automation, Evolved: Your New Playbook for Smarter Knowledge Work

Speaker: Frank Taliano

Documents are the backbone of enterprise operations, but they are also a common source of inefficiency. From buried insights to manual handoffs, document-based workflows can quietly stall decision-making and drain resources. For large, complex organizations, legacy systems and siloed processes create friction that AI is uniquely positioned to resolve.

article thumbnail

I tested the world's fastest SSD, and the results will make power users shed a tear

Collaboration 2.0

The Crucial T705 Gen 5 is one of, if not the fastest NVMe M.2 SSDs money can buy. But can you benefit from its blazing performance?

IT 247
article thumbnail

Crosspoint to Invest $5M in Each Innovation Sandbox Finalist

Data Breach Today

Money Aims to Simplify Fundraising for RSA Conference Innovation Sandbox Finalists Finalists selected for RSA Conference’s Innovation Sandbox competition will now each receive a $5 million investment from Crosspoint Capital. Managing Partner Hugh Thompson said this initiative ensures top cybersecurity startups are equipped to handle increased demand and scale effectively.

article thumbnail

LastPass adds passkey support for free and premium users (and now get up to 50% off plans for Black Friday)

Collaboration 2.0

LastPass users can take another step toward a password-less world. Here's how to activate the beta feature now.

Passwords 246
article thumbnail

Video: What Is Quishing & How to Protect Your Personal Information

eSecurity Planet

Quishing (QR code phishing) is a cybercrime tactic where cybercriminals exploit deceptive QR codes to trick unsuspecting individuals. Learn how to recognize the warning signs of quishing attacks and protect yourself from this growing threat to safeguard your personal information. The post Video: What Is Quishing & How to Protect Your Personal Information appeared first on eSecurity Planet.

Phishing 101
article thumbnail

State of AI in Sales & Marketing 2025

AI adoption is reshaping sales and marketing. But is it delivering real results? We surveyed 1,000+ GTM professionals to find out. The data is clear: AI users report 47% higher productivity and an average of 12 hours saved per week. But leaders say mainstream AI tools still fall short on accuracy and business impact. Download the full report today to see how AI is being used — and where go-to-market professionals think there are gaps and opportunities.

article thumbnail

The camera I recommend to most new photographers is $180 off for Black Friday

Collaboration 2.0

If you're getting serious about photography and ready to upgrade from your phone, the Canon EOS R100 is one of the best places to start. It's on sale now for 38% off.

Sales 245
article thumbnail

Breaking In to Keep Hackers Out: The Essential Work of Penetration Testers

IT Governance

The penetration test process and types of penetration test It may sound counterintuitive, but organisations actually pay people to break into their networks. The reason is simple: to catch a thief, you must think like a thief. Organisations hire ethical hackers – aka ‘ penetration testers ’ or ‘pen testers’ – to identify weaknesses in their defences before a criminal hacker exploits them.

Risk 95
article thumbnail

88% of workers would use AI to overcome task paralysis, Google study says

Collaboration 2.0

Having trouble getting started on something at work? Try AI.

243
243
article thumbnail

New browser-based query editor for OpenText Core Analytics Database accelerates and simplifies querying your data 

OpenText Information Management

OpenTextâ„¢ Core Analytics Database (Vertica Database as a Service) is a brand new cloud-based managed database offering that helps organizations minimize compute resources for total control over each analytical workload. With Core Analytics Database, organizations get a unified cloud database platform with high-performance SQL and Python analytics and built-in machine learning perfect for many workloads.

article thumbnail

How to Achieve High-Accuracy Results When Using LLMs

Speaker: Ben Epstein, Stealth Founder & CTO | Tony Karrer, Founder & CTO, Aggregage

When tasked with building a fundamentally new product line with deeper insights than previously achievable for a high-value client, Ben Epstein and his team faced a significant challenge: how to harness LLMs to produce consistent, high-accuracy outputs at scale. In this new session, Ben will share how he and his team engineered a system (based on proven software engineering approaches) that employs reproducible test variations (via temperature 0 and fixed seeds), and enables non-LLM evaluation m

article thumbnail

This new AI image generator lets you create reusable characters

Collaboration 2.0

Luma AI claims its Photon image creator is faster than any comparable model currently available.

IT 237
article thumbnail

Integration with Backend Services in Angular Grid

Enterprise Software Blog

In modern web applications, efficiently managing large datasets is crucial for delivering optimal performance and great user experience. One of the best practices to achieve this is by implementing remote paging in your Web API, which allows clients to fetch only the required data on demand. In this article, then, we will explore how to extend your Web API to support remote paging capabilities and integrate it seamlessly with Ignite UI's igxGrid component or any other component that can cons

article thumbnail

Why Jaguar's Copy Nothing campaign broke the internet - plus 5 ways to nail your next product launch

Collaboration 2.0

The internet has plenty to say about Jaguar's recent colorful rebrand. This article breaks down what happened and shares five hacks to crush your next product launch.

214
214