Stealth Soldier: A New Custom Backdoor Targets North Africa with Espionage Attacks

09/06/2023 0 Comments 0 tags

A new custom backdoor dubbed Stealth Soldier has been deployed as part of a set of highly-targeted espionage attacks in North Africa. “Stealth Soldier malware is an undocumented backdoor that primarily operates

Experts Unveil Exploit for Recent Windows Vulnerability Under Active Exploitation

08/06/2023 0 Comments 0 tags

Details have emerged about a now-patched actively exploited security flaw in Microsoft Windows that could be abused by a threat actor to gain elevated privileges on affected systems. The vulnerability,

Clop Ransomware Gang Likely Exploiting MOVEit Transfer Vulnerability Since 2021

08/06/2023 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) have published a joint advisory regarding the active exploitation of a recently disclosed critical flaw in Progress Software’s

How to Improve Your API Security Posture

08/06/2023 0 Comments 0 tags

APIs, more formally known as application programming interfaces, empower apps and microservices to communicate and share data. However, this level of connectivity doesn’t come without major risks. Hackers can exploit

Urgent Security Updates: Cisco and VMware Address Critical Vulnerabilities

08/06/2023 0 Comments 0 tags

VMware has released security updates to fix a trio of flaws in Aria Operations for Networks that could result in information disclosure and remote code execution. The most critical of the three

Kimsuky Targets Think Tanks and News Media with Social Engineering Attacks

08/06/2023 0 Comments 0 tags

The North Korean nation-state threat actor known as Kimsuky has been linked to a social engineering campaign targeting experts in North Korean affairs with the goal of stealing Google credentials and delivering

Barracuda Urges Immediate Replacement of Hacked ESG Appliances

08/06/2023 0 Comments 0 tags

Enterprise security company Barracuda is now urging customers who were impacted by a recently disclosed zero-day flaw in its Email Security Gateway (ESG) appliances to immediately replace them. “Impacted ESG

Microsoft to Pay $20 Million Penalty for Illegally Collecting Kids’ Data on Xbox

08/06/2023 0 Comments 0 tags

Microsoft has agreed to pay a penalty of $20 million to settle U.S. Federal Trade Commission (FTC) charges that the company illegally collected and retained the data of children who

Winning the Mind Game: The Role of the Ransomware Negotiator

07/06/2023 0 Comments 0 tags

Get exclusive insights from a real ransomware negotiator who shares authentic stories from network hostage situations and how he managed them. The Ransomware Industry Ransomware is an industry. As such,

New PowerDrop Malware Targeting U.S. Aerospace Industry

07/06/2023 0 Comments 0 tags

An unknown threat actor has been observed targeting the U.S. aerospace industry with a new PowerShell-based malware called PowerDrop. “PowerDrop uses advanced techniques to evade detection such as deception, encoding,