Key Lesson from Microsoft’s Password Spray Hack: Secure Every Account

26/03/2024 0 Comments 0 tags

In January 2024, Microsoft discovered they’d been the victim of a hack orchestrated by Russian-state hackers Midnight Blizzard (sometimes known as Nobelium). The concerning detail about this case is how easy it

New “GoFetch” Vulnerability in Apple M-Series Chips Leaks Secret Encryption Keys

25/03/2024 0 Comments 0 tags

A new security shortcoming discovered in Apple M-series chips could be exploited to extract secret keys used during cryptographic operations. Dubbed GoFetch, the vulnerability relates to a microarchitectural side-channel attack that

Iran-Linked MuddyWater Deploys Atera for Surveillance in Phishing Attacks

25/03/2024 0 Comments 0 tags

The Iran-affiliated threat actor tracked as MuddyWater (aka Mango Sandstorm or TA450) has been linked to a new phishing campaign in March 2024 that aims to deliver a legitimate Remote Monitoring and

N. Korea-linked Kimsuky Shifts to Compiled HTML Help Files in Ongoing Cyberattacks

24/03/2024 0 Comments 0 tags

The North Korea-linked threat actor known as Kimsuky (aka Black Banshee, Emerald Sleet, or Springtail) has been observed shifting its tactics, leveraging Compiled HTML Help (CHM) files as vectors to deliver malware

German Police Seize ‘Nemesis Market’ in Major International Darknet Raid

24/03/2024 0 Comments 0 tags

German authorities have announced the takedown of an illicit underground marketplace called Nemesis Market that peddled narcotics, stolen data, and various cybercrime services. The Federal Criminal Police Office (aka Bundeskriminalamt or BKA)

Russian Hackers Use ‘WINELOADER’ Malware to Target German Political Parties

23/03/2024 0 Comments 0 tags

The WINELOADER backdoor used in recent cyber attacks targeting diplomatic entities with wine-tasting phishing lures has been attributed as the handiwork of a hacking group with links to Russia’s Foreign

New StrelaStealer Phishing Attacks Hit Over 100 Organizations in E.U. and U.S.

22/03/2024 0 Comments 0 tags

Cybersecurity researchers have detected a new wave of phishing attacks that aim to deliver an ever-evolving information stealer referred to as StrelaStealer. The campaigns impact more than 100 organizations in the

AWS Patches Critical ‘FlowFixation’ Bug in Airflow Service to Prevent Session Hijacking

22/03/2024 0 Comments 0 tags

Cybersecurity researchers have shared details of a now-patched security vulnerability in Amazon Web Services (AWS) Managed Workflows for Apache Airflow (MWAA) that could be potentially exploited by a malicious actor

China-Linked Group Breaches Networks via Connectwise, F5 Software Flaws

22/03/2024 0 Comments 0 tags

A China-linked threat cluster leveraged security flaws in Connectwise ScreenConnect and F5 BIG-IP software to deliver custom malware capable of delivering additional backdoors on compromised Linux hosts as part of

Implementing Zero Trust Controls for Compliance

22/03/2024 0 Comments 0 tags

The ThreatLocker® Zero Trust Endpoint Protection Platform implements a strict deny-by-default, allow-by-exception security posture to give organizations the ability to set policy-based controls within their environment and mitigate countless cyber threats, including