Microsoft Expands Cloud Logging to Counter Rising Nation-State Cyber Threats

20/07/2023 0 Comments 0 tags

Microsoft on Wednesday announced that it’s expanding cloud logging capabilities to help organizations investigate cybersecurity incidents and gain more visibility after facing criticism in the wake of a recent espionage attack

New P2PInfect Worm Targeting Redis Servers on Linux and Windows Systems

20/07/2023 0 Comments 0 tags

Cybersecurity researchers have uncovered a new cloud targeting, peer-to-peer (P2P) worm called P2PInfect that targets vulnerable Redis instances for follow-on exploitation. “P2PInfect exploits Redis servers running on both Linux and Windows Operating

Zero-Day Attacks Exploited Critical Vulnerability in Citrix ADC and Gateway

20/07/2023 0 Comments 0 tags

Citrix is alerting users of a critical security flaw in NetScaler Application Delivery Controller (ADC) and Gateway that it said is being actively exploited in the wild. Tracked as CVE-2023-3519 (CVSS score: 9.8), the

U.S. Government Blacklists Cytrox and Intellexa Spyware Vendors for Cyber Espionage

20/07/2023 0 Comments 0 tags

The U.S. government on Tuesday added two foreign commercial spyware vendors, Cytrox and Intellexa, to an economic blocklist for weaponizing cyber exploits to gain unauthorized access to devices and “threatening

Bad.Build Flaw in Google Cloud Build Raises Concerns of Privilege Escalation

20/07/2023 0 Comments 0 tags

Cybersecurity researchers have uncovered a privilege escalation vulnerability in Google Cloud that could enable malicious actors tamper with application images and infect users, leading to supply chain attacks. The issue,

Exploring the Dark Side: OSINT Tools and Techniques for Unmasking Dark Web Operations

20/07/2023 0 Comments 0 tags

On April 5, 2023, the FBI and Dutch National Police announced the takedown of Genesis Market, one of the largest dark web marketplaces. The operation, dubbed “Operation Cookie Monster,” resulted in

Chinese APT41 Hackers Target Mobile Devices with New WyrmSpy and DragonEgg Spyware

20/07/2023 0 Comments 0 tags

The prolific China-linked nation-state actor known as APT41 has been linked to two previously undocumented strains of Android spyware called WyrmSpy and DragonEgg. “Known for its exploitation of web-facing applications

CISA and NSA Issue New Guidance to Strengthen 5G Network Slicing Against Threats

20/07/2023 0 Comments 0 tags

U.S. cybersecurity and intelligence agencies have released a set of recommendations to address security concerns with 5G standalone network slicing and harden them against possible threats. “The threat landscape in 5G is

How to Manage Your Attack Surface?

20/07/2023 0 Comments 0 tags

Attack surfaces are growing faster than security teams can keep up. To stay ahead, you need to know what’s exposed and where attackers are most likely to strike. With cloud

FIN8 Group Using Modified Sardonic Backdoor for BlackCat Ransomware Attacks

19/07/2023 0 Comments 0 tags

The financially motivated threat actor known as FIN8 has been observed using a “revamped” version of a backdoor called Sardonic to deliver the BlackCat ransomware. According to the Symantec Threat Hunter Team, part