The Different Methods and Stages of Penetration Testing

15/03/2023 0 Comments 0 tags

The stakes could not be higher for cyber defenders. With the vast amounts of sensitive information, intellectual property, and financial data at risk, the consequences of a data breach can

Tick APT Targeted High-Value Customers of East Asian Data-Loss Prevention Company

15/03/2023 0 Comments 0 tags

A cyberespionage actor known as Tick has been attributed with high confidence to a compromise of an East Asian data-loss prevention (DLP) company that caters to government and military entities.

Microsoft Rolls Out Patches for 80 New Security Flaws — Two Under Active Attack

15/03/2023 0 Comments 0 tags

Microsoft’s Patch Tuesday update for March 2023 is rolling out with remediations for a set of 80 security flaws, two of which have come under active exploitation in the wild. Eight

The Prolificacy of LockBit Ransomware

14/03/2023 0 Comments 0 tags

Today, the LockBit ransomware is the most active and successful cybercrime organization in the world. Attributed to a Russian Threat Actor, LockBit has stepped out from the shadows of the

Microsoft Warns of Large-Scale Use of Phishing Kits to Send Millions of Emails Daily

14/03/2023 0 Comments 0 tags

An open source adversary-in-the-middle (AiTM) phishing kit has found a number of takers in the cybercrime world for its ability to orchestrate attacks at scale. Microsoft Threat Intelligence is tracking

Fortinet FortiOS Flaw Exploited in Targeted Cyberattacks on Government Entities

14/03/2023 0 Comments 0 tags

Government entities and large organizations have been targeted by an unknown threat actor by exploiting a security flaw in Fortinet FortiOS software to result in data loss and OS and

GoBruteforcer: New Golang-Based Malware Breaches Web Servers Via Brute-Force Attacks

14/03/2023 0 Comments 0 tags

A new Golang-based malware dubbed GoBruteforcer has been found targeting web servers running phpMyAdmin, MySQL, FTP, and Postgres to corral the devices into a botnet. “GoBruteforcer chose a Classless Inter-Domain Routing (CIDR)

Large-scale Cyber Attack Hijacks East Asian Websites for Adult Content Redirects

13/03/2023 0 Comments 0 tags

A widespread malicious cyber operation has hijacked thousands of websites aimed at East Asian audiences to redirect visitors to adult-themed content since early September 2022. The ongoing campaign entails injecting

Warning: AI-generated YouTube Video Tutorials Spreading Infostealer Malware

13/03/2023 0 Comments 0 tags

Threat actors have been increasingly observed using AI-generated YouTube Videos to spread a variety of stealer malware such as Raccoon, RedLine, and Vidar. “The videos lure users by pretending to

How to Apply NIST Principles to SaaS in 2023

13/03/2023 0 Comments 0 tags

The National Institute of Standards and Technology (NIST) is one of the standard-bearers in global cybersecurity. The U.S.-based institute’s cybersecurity framework helps organizations of all sizes understand, manage, and reduce