Microsoft Warns of Storm-0539: The Rising Threat Behind Holiday Gift Card Frauds

17/12/2023 0 Comments 0 tags

Microsoft is warning of an uptick in malicious activity from an emerging threat cluster it’s tracking as Storm-0539 for orchestrating gift card fraud and theft via highly sophisticated email and SMS phishing

New KV-Botnet Targeting Cisco, DrayTek, and Fortinet Devices for Stealthy Attacks

17/12/2023 0 Comments 0 tags

A new botnet consisting of firewalls and routers from Cisco, DrayTek, Fortinet, and NETGEAR is being used as a covert data transfer network for advanced persistent threat actors, including the

Crypto Hardware Wallet Ledger’s Supply Chain Breach Results in $600,000 Theft

17/12/2023 0 Comments 0 tags

Crypto hardware wallet maker Ledger published a new version of its “@ledgerhq/connect-kit” npm module after unidentified threat actors pushed malicious code that led to the theft of more than $600,000 in virtual

Bug or Feature? Hidden Web Application Vulnerabilities Uncovered

17/12/2023 0 Comments 0 tags

Web Application Security consists of a myriad of security controls that ensure that a web application: Functions as expected. Cannot be exploited to operate out of bounds. Cannot initiate operations

China’s MIIT Introduces Color-Coded Action Plan for Data Security Incidents

17/12/2023 0 Comments 0 tags

China’s Ministry of Industry and Information Technology (MIIT) on Friday unveiled draft proposals detailing its plans to tackle data security events in the country using a color-coded system. The effort is designed

Reimagining Network Pentesting With Automation

15/12/2023 0 Comments 0 tags

Network penetration testing plays a crucial role in protecting businesses in the ever-evolving world of cybersecurity. Yet, business leaders and IT pros have misconceptions about this process, which impacts their

Russian SVR-Linked APT29 Targets JetBrains TeamCity Servers in Ongoing Attacks

15/12/2023 0 Comments 0 tags

Threat actors affiliated with the Russian Foreign Intelligence Service (SVR) have targeted unpatched JetBrains TeamCity servers in widespread attacks since September 2023. The activity has been tied to a nation-state

New Hacker Group ‘GambleForce’ Tageting APAC Firms Using SQL Injection Attacks

15/12/2023 0 Comments 0 tags

A previously unknown hacker outfit called GambleForce has been attributed to a series of SQL injection attacks against companies primarily in the Asia-Pacific (APAC) region since at least September 2023. “GambleForce uses

Microsoft Takes Legal Action to Crack Down on Storm-1152’s Cybercrime Network

15/12/2023 0 Comments 0 tags

Microsoft on Wednesday said it obtained a court order to seize infrastructure set up by a group called Storm-1152 that peddled roughly 750 million fraudulent Microsoft accounts and tools through

116 Malware Packages Found on PyPI Repository Infecting Windows and Linux Systems

15/12/2023 0 Comments 0 tags

Cybersecurity researchers have identified a set of 116 malicious packages on the Python Package Index (PyPI) repository that are designed to infect Windows and Linux systems with a custom backdoor.