RedTail Crypto-Mining Malware Exploiting Palo Alto Networks Firewall Vulnerability

30/05/2024 0 Comments 0 tags

The threat actors behind the RedTail cryptocurrency mining malware have added a recently disclosed security flaw impacting Palo Alto Networks firewalls to its exploit arsenal. The addition of the PAN-OS

Cyber Espionage Alert: LilacSquid Targets IT, Energy, and Pharma Sectors

30/05/2024 0 Comments 0 tags

A previously undocumented cyber espionage-focused threat actor named LilacSquid has been linked to targeted attacks spanning various sectors in the United States (U.S.), Europe, and Asia as part of a

Researchers Uncover Active Exploitation of WordPress Plugin Vulnerabilities

30/05/2024 0 Comments 0 tags

Cybersecurity researchers have warned that multiple high-severity security vulnerabilities in WordPress plugins are being actively exploited by threat actors to create rogue administrator accounts for follow-on exploitation. “These vulnerabilities are

How to Build Your Autonomous SOC Strategy

30/05/2024 0 Comments 0 tags

Security leaders are in a tricky position trying to discern how much new AI-driven cybersecurity tools could actually benefit a security operations center (SOC). The hype about generative AI is

Europol Shuts Down 100+ Servers Linked to IcedID, TrickBot, and Other Malware

30/05/2024 0 Comments 0 tags

Europol on Thursday said it shut down the infrastructure associated with several malware loader operations such as IcedID, SystemBC, PikaBot, SmokeLoader, Bumblebee, and TrickBot as part of a coordinated law

U.S. Dismantles World’s Largest 911 S5 Botnet, with 19 Million Infected Devices

30/05/2024 0 Comments 0 tags

The U.S. Department of Justice (DoJ) on Wednesday said it dismantled what it described as “likely the world’s largest botnet ever,” which consisted of an army of 19 million infected

Okta Warns of Credential Stuffing Attacks Targeting Customer Identity Cloud

30/05/2024 0 Comments 0 tags

Okta is warning that a cross-origin authentication feature in Customer Identity Cloud (CIC) is susceptible to credential stuffing attacks orchestrated by threat actors. “We observed that the endpoints used to

Cybercriminals Abuse StackOverflow to Promote Malicious Python Package

29/05/2024 0 Comments 0 tags

Cybersecurity researchers have warned of a new malicious Python package that has been discovered in the Python Package Index (PyPI) repository to facilitate cryptocurrency theft as part of a broader

Check Point Warns of Zero-Day Attacks on its VPN Gateway Products

29/05/2024 0 Comments 0 tags

Check Point is warning of a zero-day vulnerability in its Network Security gateway products that threat actors have exploited in the wild. Tracked as CVE-2024-24919, the issue impacts CloudGuard Network,

Brazilian Banks Targeted by New AllaKore RAT Variant Called AllaSenha

29/05/2024 0 Comments 0 tags

Brazilian banking institutions are the target of a new campaign that distributes a custom variant of the Windows-based AllaKore remote access trojan (RAT) called AllaSenha. The malware is “specifically aimed