Chinese Hackers Deploy Microsoft-Signed Rootkit to Target Gaming Sector

12/07/2023 0 Comments 0 tags

Cybersecurity researchers have unearthed a novel rootkit signed by Microsoft that’s engineered to communicate with an actor-controlled attack infrastructure. Trend Micro has attributed the activity cluster to the same actor

Python-Based PyLoose Fileless Attack Targets Cloud Workloads for Cryptocurrency Mining

12/07/2023 0 Comments 0 tags

A new fileless attack dubbed PyLoose has been observed striking cloud workloads with the goal of delivering a cryptocurrency miner, new findings from Wiz reveal. “The attack consists of Python code that

Microsoft Releases Patches for 132 Vulnerabilities, Including 6 Under Active Attack

12/07/2023 0 Comments 0 tags

Microsoft on Tuesday released updates to address a total of 132 new security flaws spanning its software, including six zero-day flaws that it said have been actively exploited in the wild. Of

Hackers Exploit Windows Policy Loophole to Forge Kernel-Mode Driver Signatures

11/07/2023 0 Comments 0 tags

A Microsoft Windows policy loophole has been observed being exploited primarily by native Chinese-speaking threat actors to forge signatures on kernel-mode drivers. “Actors are leveraging multiple open-source tools that alter

How to Apply MITRE ATT&CK to Your Organization

11/07/2023 0 Comments 0 tags

Discover all the ways MITRE ATT&CK can help you defend your organization. Build your security strategy and policies by making the most of this important framework. What is the MITRE

SCARLETEEL Cryptojacking Campaign Exploiting AWS Fargate in Ongoing Campaign

11/07/2023 0 Comments 0 tags

Cloud environments continue to be at the receiving end of an ongoing advanced attack campaign dubbed SCARLETEEL, with the threat actors now setting their sights on Amazon Web Services (AWS)

Beware of Big Head Ransomware: Spreading Through Fake Windows Updates

11/07/2023 0 Comments 0 tags

A developing piece of ransomware called Big Head is being distributed as part of a malvertising campaign that takes the form of bogus Microsoft Windows updates and Word installers. Big Head was first

Apple Issues Urgent Patch for Zero-Day Flaw Targeting iOS, iPadOS, macOS, and Safari

11/07/2023 0 Comments 0 tags

Apple has released Rapid Security Response updates for iOS, iPadOS, macOS, and Safari web browser to address a zero-day flaw that it said has been actively exploited in the wild. The WebKit bug, cataloged

New Mozilla Feature Blocks Risky Add-Ons on Specific Websites to Safeguard User Security

10/07/2023 0 Comments 0 tags

Mozilla has announced that some add-ons may be blocked from running on certain sites as part of a new feature called Quarantined Domains. “We have introduced a new back-end feature to

New TOITOIN Banking Trojan Targeting Latin American Businesses

10/07/2023 0 Comments 0 tags

Businesses operating in the Latin American (LATAM) region are the target of a new Windows-based banking trojan called TOITOIN since May 2023. “This sophisticated campaign employs a trojan that follows a multi-staged