3,500 Arrested in Global Operation HAECHI-IV Targeting Financial Criminals

20/12/2023 0 Comments 0 tags

A six-month-long international police operation codenamed HAECHI-IV has resulted in the arrests of nearly 3,500 individuals and seizures worth $300 million across 34 countries. The exercise, which took place from July through

Hackers Abusing GitHub to Evade Detection and Control Compromised Hosts

19/12/2023 0 Comments 0 tags

Threat actors are increasingly making use of GitHub for malicious purposes through novel methods, including abusing secret Gists and issuing malicious commands via git commit messages. “Malware authors occasionally place

Behind the Scenes of Matveev’s Ransomware Empire: Tactics and Team

19/12/2023 0 Comments 0 tags

Cybersecurity researchers have shed light on the inner workings of the ransomware operation led by Mikhail Pavlovich Matveev, a Russian national who was indicted by the U.S. government earlier this year for

FBI Takes Down BlackCat Ransomware, Releases Free Decryption Tool

19/12/2023 0 Comments 0 tags

The U.S. Justice Department (DoJ) has officially announced the disruption of the BlackCat ransomware operation and released a decryption tool that victims can use to regain access to files locked by the

New Malvertising Campaign Distributing PikaBot Disguised as Popular Software

19/12/2023 0 Comments 0 tags

The malware loader known as PikaBot is being distributed as part of a malvertising campaign targeting users searching for legitimate software like AnyDesk. “PikaBot was previously only distributed via malspam campaigns similarly to

Iranian Hackers Using MuddyC2Go in Telecom Espionage Attacks Across Africa

19/12/2023 0 Comments 0 tags

The Iranian nation-state actor known as MuddyWater has leveraged a newly discovered command-and-control (C2) framework called MuddyC2Go in its attacks on the telecommunications sector in Egypt, Sudan, and Tanzania. The Symantec Threat

Are We Ready to Give Up on Security Awareness Training?

19/12/2023 0 Comments 0 tags

Some of you have already started budgeting for 2024 and allocating funds to security areas within your organization. It is safe to say that employee security awareness training is one

8220 Gang Exploiting Oracle WebLogic Server Vulnerability to Spread Malware

19/12/2023 0 Comments 0 tags

The threat actors associated with the 8220 Gang have been observed exploiting a high-severity flaw in Oracle WebLogic Server to propagate their malware. The security shortcoming is CVE-2020-14883 (CVSS score: 7.2), a remote code

Double-Extortion Play Ransomware Strikes 300 Organizations Worldwide

19/12/2023 0 Comments 0 tags

The threat actors behind the Play ransomware are estimated to have impacted approximately 300 entities as of October 2023, according to a new joint cybersecurity advisory from Australia and the

Rhadamanthys Malware: Swiss Army Knife of Information Stealers Emerges

18/12/2023 0 Comments 0 tags

The developers of the information stealer malware known as Rhadamanthys are actively iterating on its features, broadening its information-gathering capabilities and also incorporating a plugin system to make it more customizable. This