U.S. Takes Down IPStorm Botnet, Russian-Moldovan Mastermind Pleads Guilty

15/11/2023 0 Comments 0 tags

The U.S. government on Tuesday announced the takedown of the IPStorm botnet proxy network and its infrastructure, as the Russian and Moldovan national behind the operation pleaded guilty. “The botnet

Three Ways Varonis Helps You Fight Insider Threats

15/11/2023 0 Comments 0 tags

What do basketball teams, government agencies, and car manufacturers have in common? Each one has been breached, having confidential, proprietary, or private information stolen and exposed by insiders. In each

Alert: Microsoft Releases Patch Updates for 5 New Zero-Day Vulnerabilities

15/11/2023 0 Comments 0 tags

Microsoft has released fixes to address 63 security bugs in its software for the month of November 2023, including three vulnerabilities that have come under active exploitation in the wild. Of the

Reptar: New Intel CPU Vulnerability Impacts Multi-Tenant Virtualized Environments

15/11/2023 0 Comments 0 tags

Intel has released fixes to close out a high-severity flaw codenamed Reptar that impacts its desktop, mobile, and server CPUs. Tracked as CVE-2023-23583 (CVSS score: 8.8), the issue has the potential to “allow escalation of privilege

Urgent: VMware Warns of Unpatched Critical Cloud Director Vulnerability

15/11/2023 0 Comments 0 tags

VMware is warning of a critical and unpatched security flaw in Cloud Director that could be exploited by a malicious actor to get around authentication protections. Tracked as CVE-2023-34060 (CVSS score: 9.8),

CISA Sets a Deadline – Patch Juniper Junos OS Flaws Before November 17

14/11/2023 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given a November 17, 2023, deadline for federal agencies and organizations to apply mitigations to secure against a number of security

Vietnamese Hackers Using New Delphi-Powered Malware to Target Indian Marketers

14/11/2023 0 Comments 0 tags

The Vietnamese threat actors behind the Ducktail stealer malware have been linked to a new campaign that ran between March and early October 2023, targeting marketing professionals in India with

New Campaign Targets Middle East Governments with IronWind Malware

14/11/2023 0 Comments 0 tags

Government entities in the Middle East are the target of new phishing campaigns that are designed to deliver a new initial access downloader dubbed IronWind. The activity, detected between July

CI/CD Risks: Protecting Your Software Development Pipelines

14/11/2023 0 Comments 0 tags

Have you heard about Dependabot? If not, just ask any developer around you, and they’ll likely rave about how it has revolutionized the tedious task of checking and updating outdated

Alert: OracleIV DDoS Botnet Targets Public Docker Engine APIs to Hijack Containers

14/11/2023 0 Comments 0 tags

Publicly-accessible Docker Engine API instances are being targeted by threat actors as part of a campaign designed to co-opt the machines into a distributed denial-of-service (DDoS) botnet dubbed OracleIV. “Attackers are