Iranian Hackers Charming Kitten Utilize POWERSTAR Backdoor in Targeted Espionage Attacks

30/06/2023 0 Comments 0 tags

Charming Kitten, the nation-state actor affiliated with Iran’s Islamic Revolutionary Guard Corps (IRGC), has been attributed to a bespoke spear-phishing campaign that delivers an updated version of a fully-featured PowerShell

3 Reasons SaaS Security is the Imperative First Step to Ensuring Secure AI Usage

30/06/2023 0 Comments 0 tags

In today’s fast-paced digital landscape, the widespread adoption of AI (Artificial Intelligence) tools is transforming the way organizations operate. From chatbots to generative AI models, these SaaS-based applications offer numerous

MITRE Unveils Top 25 Most Dangerous Software Weaknesses of 2023: Are You at Risk?

30/06/2023 0 Comments 0 tags

MITRE has released its annual list of the Top 25 “most dangerous software weaknesses” for the year 2023. “These weaknesses lead to serious vulnerabilities in software,” the U.S. Cybersecurity and

Cybercriminals Hijacking Vulnerable SSH Servers in New Proxyjacking Campaign

30/06/2023 0 Comments 0 tags

An active financially motivated campaign is targeting vulnerable SSH servers to covertly ensnare them into a proxy network. “This is an active campaign in which the attacker leverages SSH for

WhatsApp Upgrades Proxy Feature Against Internet Shutdowns

30/06/2023 0 Comments 0 tags

Meta’s WhatsApp has rolled out updates to its proxy feature, allowing more flexibility in the kind of content that can be shared in conversations. This includes the ability to send

From MuddyC3 to PhonyC2: Iran’s MuddyWater Evolves with a New Cyber Weapon

30/06/2023 0 Comments 0 tags

The Iranian state-sponsored group dubbed MuddyWater has been attributed to a previously unseen command-and-control (C2) framework called PhonyC2 that’s been put to use by the actor since 2021. Evidence shows that the

Fluhorse: Flutter-Based Android Malware Targets Credit Cards and 2FA Codes

29/06/2023 0 Comments 0 tags

Cybersecurity researchers have shared the inner workings of an Android malware family called Fluhorse. The malware “represents a significant shift as it incorporates the malicious components directly within the Flutter code,”

Android Spy App LetMeSpy Suffers Major Data Breach, Exposing Users’ Personal Data

29/06/2023 0 Comments 0 tags

Android-based phone monitoring app LetMeSpy has disclosed a security breach that allowed an unauthorized third-party to steal sensitive data associated with thousands of Android users. “As a result of the

North Korean Hacker Group Andariel Strikes with New EarlyRat Malware

29/06/2023 0 Comments 0 tags

The North Korea-aligned threat actor known as Andariel leveraged a previously undocumented malware called EarlyRat in attacks exploiting the Log4j Log4Shell vulnerability last year. “Andariel infects machines by executing a

The Right Way to Enhance CTI with AI (Hint: It’s the Data)

29/06/2023 0 Comments 0 tags

Cyber threat intelligence is an effective weapon in the ongoing battle to protect digital assets and infrastructure – especially when combined with AI. But AI is only as good as