Daily Cyber Brief
NK is behind a number of recent attacks on hospitals, Bitter APT hackers continue to target Bangladesh military entities, and Apple launches a mode to block spyware attacks...

Cybersecurity
Apple has announced a new security feature to protect high-risk users from spyware cyber-attacks. Lockdown Mode will be available in the autumn with the next operating system across all of the company's iPhones, iPads and Macs. The setting blocks certain functions…
The U.S. government said Wednesday that North Korea is behind a recent strain of ransomware cyberattacks on hospitals and other health care facilities. The warning is the starkest alert to date that North Korea, which the U.S. has long alleged uses its hackers to…
SHI International, a New Jersey-based provider of Information Technology (IT) products and services, has confirmed that a malware attack hit its network over the weekend. SHI claims to be one of North America's largest IT solutions providers, with $12.3 billion in revenue in…
Marriott confirmed reports that hackers tried to extort the company after 20 GB of employee and customer data was stolen from BWI Airport Marriott in Baltimore. In a statement, Marriott International shared more information about a Tuesday report from…
Malicious actors have been observed abusing legitimate adversary simulation software in their attacks in an attempt to stay under the radar and evade detection. Palo Alto Networks Unit 42 said a malware sample uploaded to the VirusTotal database on May 19, 2022, contained…
A security advisory for a vulnerability (CVE) published by MITRE has accidentally been exposing links to remote admin consoles of over a dozen vulnerable IP devices since at least April 2022. BleepingComputer became aware of this issue yesterday after getting tipped off…
A 12,500-student community college in California is suffering from a cyberattack that brought down the school’s online services and campus phone lines. College of the Desert – based in Palm Desert, California – did not respond to questions about whether the incident was a…
The maintainers of the OpenSSL project have released patches to address a high-severity bug in the cryptographic library that could potentially lead to remote code execution under certain scenarios. The issue, now assigned the identifier CVE-2022-2274, has been described as a…
Hacking groups and ransomware operations are moving away from Cobalt Strike to the newer Brute Ratel post-exploitation toolkit to evade detection by EDR and antivirus solutions. Corporate cybersecurity teams commonly consist of employees who attempt to breach…
Military entities located in Bangladesh continue to be at the receiving end of sustained cyberattacks by an advanced persistent threat tracked as Bitter. "Through malicious document files and intermediate malware stages the threat actors conduct espionage by…