New APT Group “CloudSorcerer” Targets Russian Government Entities

08/07/2024 0 Comments 0 tags

A previously undocumented advanced persistent threat (APT) group dubbed CloudSorcerer has been observed targeting Russian government entities by leveraging cloud services for command-and-control (C2) and data exfiltration. Cybersecurity firm Kaspersky,

Dark Web Malware Logs Expose 3,300 Users Linked to Child Abuse Sites

08/07/2024 0 Comments 0 tags

An analysis of information-stealing malware logs published on the dark web has led to the discovery of thousands of consumers of child sexual abuse material (CSAM), indicating how such information

Apple Removes VPN Apps from Russian App Store Amid Government Pressure

08/07/2024 0 Comments 0 tags

Apple removed a number of virtual private network (VPN) apps in Russia from its App Store on July 4, 2024, following a request by Russia’s state communications watchdog Roskomnadzor, Russian

Webinar Alert: Learn How ITDR Solutions Stop Sophisticated Identity Attacks

05/07/2024 0 Comments 0 tags

Identity theft isn’t just about stolen credit cards anymore. Today, cybercriminals are using advanced tactics to infiltrate organizations and cause major damage with compromised credentials. The stakes are high: ransomware

OVHcloud Hit with Record 840 Million PPS DDoS Attack Using MikroTik Routers

05/07/2024 0 Comments 0 tags

French cloud computing firm OVHcloud said it mitigated a record-breaking distributed denial-of-service (DDoS) attack in April 2024 that reached a packet rate of 840 million packets per second (Mpps). This

Blueprint for Success: Implementing a CTEM Operation

05/07/2024 0 Comments 0 tags

The attack surface isn’t what it once was and it’s becoming a nightmare to protect. A constantly expanding and evolving attack surface means risk to the business has skyrocketed and

GootLoader Malware Still Active, Deploys New Versions for Enhanced Attacks

05/07/2024 0 Comments 0 tags

The malware known as GootLoader continues to be in active use by threat actors looking to deliver additional payloads to compromised hosts. “Updates to the GootLoader payload have resulted in

Polyfill[.]io Attack Impacts Over 380,000 Hosts, Including Major Companies

05/07/2024 0 Comments 0 tags

The supply chain attack targeting widely-used Polyfill[.]io JavaScript library is wider in scope than previously thought, with new findings from Censys showing that over 380,000 hosts are embedding a polyfill

New Golang-Based Zergeca Botnet Capable of Powerful DDoS Attacks

05/07/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered a new botnet called Zergeca that’s capable of conducting distributed denial-of-service (DDoS) attacks. Written in Golang, the botnet is so named for its reference to a

Microsoft Uncovers Critical Flaws in Rockwell Automation PanelView Plus

04/07/2024 0 Comments 0 tags

Microsoft has revealed two security flaws in Rockwell Automation PanelView Plus that could be weaponized by remote, unauthenticated attackers to execute arbitrary code and trigger a denial-of-service (DoS) condition. “The