Understanding Active Directory Attack Paths to Improve Security

08/08/2023 0 Comments 0 tags

Introduced in 1999, Microsoft Active Directory is the default identity and access management service in Windows networks, responsible for assigning and enforcing security policies for all network endpoints. With it,

New Yashma Ransomware Variant Targets Multiple English-Speaking Countries

08/08/2023 0 Comments 0 tags

An unknown threat actor is using a variant of the Yashma ransomware to target various entities in English-speaking countries, Bulgaria, China, and Vietnam at least since June 4, 2023. Cisco

LOLBAS in the Wild: 11 Living-Off-The-Land Binaries That Could Be Used for Malicious Purposes

08/08/2023 0 Comments 0 tags

Cybersecurity researchers have discovered a set of 11 living-off-the-land binaries-and-scripts (LOLBAS) that could be maliciously abused by threat actors to conduct post-exploitation activities.  “LOLBAS is an attack method that uses

New Malware Campaign Targets Inexperienced Cyber Criminals with OpenBullet Configs

07/08/2023 0 Comments 0 tags

A new malware campaign has been observed making use of malicious OpenBullet configuration files to target inexperienced cyber criminals with the goal of delivering a remote access trojan (RAT) capable

North Korean Hackers Targets Russian Missile Engineering Firm

07/08/2023 0 Comments 0 tags

Two different North Korean nation-state actors have been linked to a cyber intrusion against the major Russian missile engineering company NPO Mashinostroyeniya. Cybersecurity firm SentinelOne said it identified “two instances of North

Enhancing Security Operations Using Wazuh: Open Source XDR and SIEM

07/08/2023 0 Comments 0 tags

In today’s interconnected world, evolving security solutions to meet growing demand is more critical than ever. Collaboration across multiple solutions for intelligence gathering and information sharing is indispensable. The idea

New ‘Deep Learning Attack’ Deciphers Laptop Keystrokes with 95% Accuracy

07/08/2023 0 Comments 0 tags

A group of academics has devised a “deep learning-based acoustic side-channel attack” that can be used to classify laptop keystrokes that are recorded using a nearby phone with 95% accuracy.

New SkidMap Linux Malware Variant Targeting Vulnerable Redis Servers

07/08/2023 0 Comments 0 tags

Vulnerable Redis services have been targeted by a “new, improved, dangerous” variant of a malware called SkidMap that’s engineered to target a wide range of Linux distributions. “The malicious nature of this

FBI Alert: Crypto Scammers are Masquerading as NFT Developers

07/08/2023 0 Comments 0 tags

The U.S. Federal Bureau of Investigation (FBI) is warning about cyber crooks masquerading as legitimate non-fungible token (NFT) developers to steal cryptocurrency and other digital assets from unsuspecting users. In

Researchers Uncover New High-Severity Vulnerability in PaperCut Software

05/08/2023 0 Comments 0 tags

Cybersecurity researchers have discovered a new high-severity security flaw in PaperCut print management software for Windows that could result in remote code execution under specific circumstances. Tracked as CVE-2023-39143 (CVSS score: 8.4),