Iran-Linked IOCONTROL Malware Targets SCADA and Linux-Based IoT Platforms

13/12/2024 0 Comments 0 tags

Iran-affiliated threat actors have been linked to a new custom malware that’s geared toward IoT and operational technology (OT) environments in Israel and the United States. The malware has been

New Linux Rootkit PUMAKIT Uses Advanced Stealth Techniques to Evade Detection

13/12/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered a new Linux rootkit called PUMAKIT that comes with capabilities to escalate privileges, hide files and directories, and conceal itself from system tools, while simultaneously evading

FBI Busts Rydox Marketplace with 7,600 PII Sales, Cryptocurrency Worth $225K Seized

13/12/2024 0 Comments 0 tags

The U.S. Department of Justice (DoJ) on Thursday announced the shutdown of an illicit marketplace called Rydox (“rydox.ru” and “rydox[.]cc”) for selling stolen personal information, access devices, and other tools

Gamaredon Deploys Android Spyware “BoneSpy” and “PlainGnome” in Former Soviet States

12/12/2024 0 Comments 0 tags

The Russia-linked state-sponsored threat actor tracked as Gamaredon has been attributed to two new Android spyware tools called BoneSpy and PlainGnome, marking the first time the adversary has been discovered

Over 300K Prometheus Instances Exposed: Credentials and API Keys Leaking Online

12/12/2024 0 Comments 0 tags

Cybersecurity researchers are warning that thousands of servers hosting the Prometheus monitoring and alerting toolkit are at risk of information leakage and exposure to denial-of-service (DoS) as well as remote

WordPress Hunk Companion Plugin Flaw Exploited to Silently Install Vulnerable Plugins

12/12/2024 0 Comments 0 tags

Malicious actors are exploiting a critical vulnerability in the Hunk Companion plugin for WordPress to install other vulnerable plugins that could open the door to a variety of attacks. The

SaaS Budget Planning Guide for IT Professionals

12/12/2024 0 Comments 0 tags

SaaS services are one of the biggest drivers of OpEx (operating expenses) for modern businesses. With Gartner projecting $247.2 billion in global SaaS spending this year, it’s no wonder SaaS

Researchers Uncover Symlink Exploit Allowing TCC Bypass in iOS and macOS

12/12/2024 0 Comments 0 tags

Details have emerged about a now-patched security vulnerability in Apple’s iOS and macOS that, if successfully exploited, could sidestep the Transparency, Consent, and Control (TCC) framework and result in unauthorized

Europol Dismantles 27 DDoS Attack Platforms Across 15 Nations; Admins Arrested

12/12/2024 0 Comments 0 tags

A global law enforcement operation has failed 27 stresser services that were used to conduct distributed denial-of-service (DDoS) attacks and took them offline as part of a multi-year international exercise

Secret Blizzard Deploys Kazuar Backdoor in Ukraine Using Amadey Malware-as-a-Service

11/12/2024 0 Comments 0 tags

The Russian nation-state actor tracked as Secret Blizzard has been observed leveraging malware associated with other threat actors to deploy a known backdoor called Kazuar on target devices located in