Australian critical infrastructure urged to tighten router security after Russian cyber warning
Matched: Australia
Australia's cyber security agency has joined international partners in warning critical infrastructure operators to strengthen the security of routers, firewalls and other network devices following alerts about Russian state-sponsored cyber threats. Operators are being urged to review configurations, apply patches and monitor for suspicious activity to reduce the risk of compromise to essential services.
Microsoft Patches a Record 570 Security Flaws
Microsoft released updates fixing 570 security flaws, nearly triple last month's record-breaking total. The company attributed the surge in vulnerability discoveries to artificial intelligence tools. The patches cover Windows operating systems and other Microsoft software.
Lessons Learned from CISA’s Recent GitHub Leak
CISA released a postmortem after a contractor accidentally exposed dozens of internal credentials, including AWS GovCloud keys, in a public GitHub repository for nearly six months. The leak went undetected until KrebsOnSecurity notified the agency. Security experts say the incident highlights critical gaps in credential monitoring and third-party contractor oversight that all security teams should learn from.
ACSC warns of large-scale campaign exploiting CMS vulnerabilities in Australia
Matched: Australia
Australia's cyber security agency has warned of a large-scale campaign targeting web content management systems, with many Australian businesses already compromised. The ACSC says attackers are exploiting CMS vulnerabilities to gain access to websites and their underlying infrastructure, urging organisations to patch systems, review user accounts, and check for signs of compromise.
Felons, Fraudsters Flog Offensive Cybersecurity Startup
A cybersecurity startup offering millions for zero-day software vulnerabilities is led by two convicted felons with far-right, conspiracy theorist backgrounds. Their previous ventures included fraudulent intelligence firms and a defunct AI lobbying platform run under false identities, raising serious concerns about the legitimacy of their latest operation.
Telstra mobile outage disrupts services across Australia
Matched: Australia
Telstra's mobile network suffered a major outage across Australia, disrupting voice and data services for millions of customers, as well as businesses, transport operators and other organisations. The company acknowledged the issue and said it was working to restore services. It is one of the most significant disruptions to hit Australia's largest telco in recent years.
FBI Seizes NetNut Proxy Platform, Popa Botnet
The FBI seized hundreds of domains tied to NetNut, a residential proxy service run by Israeli company Alarum Technologies. The action followed a KrebsOnSecurity report linking NetNut to the Popa botnet, a network of at least two million devices infected without owner consent. The seizure involved industry partners and came roughly two weeks after the security findings were published.
Scattered Spider Hackers Plead Guilty on Day 1 of Trial
Two members of the Scattered Spider cybercrime group pleaded guilty on the first day of their trial in the UK, avoiding what was expected to be a six-week proceeding. The pair were charged in connection with an August 2024 cyberattack on Transport for London, which severely disrupted the city's public transport network.
‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm
A years-long Android botnet called Popa has hijacked millions of consumer TV boxes to relay traffic tied to ad fraud, account takeovers, and data scraping. Security researchers have linked the operation to NetNut, a residential proxy service run by Alarum Technologies, a publicly traded Israeli company listed on NASDAQ.
Who Runs the Ransomware Group ‘The Gentlemen?’
A ransomware group called The Gentlemen has quickly become the second most active such gang, luring hackers with a 90% affiliate payout. An investigation into the group's administrator reveals clues pointing to a real-world identity behind the operation, though the group's rapid rise and recruitment success make it a significant emerging cybercrime threat.