CISA Sets a Deadline – Patch Juniper Junos OS Flaws Before November 17

14/11/2023 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given a November 17, 2023, deadline for federal agencies and organizations to apply mitigations to secure against a number of security

Vietnamese Hackers Using New Delphi-Powered Malware to Target Indian Marketers

14/11/2023 0 Comments 0 tags

The Vietnamese threat actors behind the Ducktail stealer malware have been linked to a new campaign that ran between March and early October 2023, targeting marketing professionals in India with

New Campaign Targets Middle East Governments with IronWind Malware

14/11/2023 0 Comments 0 tags

Government entities in the Middle East are the target of new phishing campaigns that are designed to deliver a new initial access downloader dubbed IronWind. The activity, detected between July

CI/CD Risks: Protecting Your Software Development Pipelines

14/11/2023 0 Comments 0 tags

Have you heard about Dependabot? If not, just ask any developer around you, and they’ll likely rave about how it has revolutionized the tedious task of checking and updating outdated

Alert: OracleIV DDoS Botnet Targets Public Docker Engine APIs to Hijack Containers

14/11/2023 0 Comments 0 tags

Publicly-accessible Docker Engine API instances are being targeted by threat actors as part of a campaign designed to co-opt the machines into a distributed denial-of-service (DDoS) botnet dubbed OracleIV. “Attackers are

The Importance of Continuous Security Monitoring for a Robust Cybersecurity Strategy

14/11/2023 0 Comments 0 tags

In 2023, the global average cost of a data breach reached $4.45 million. Beyond the immediate financial loss, there are long-term consequences like diminished customer trust, weakened brand value, and derailed

CacheWarp Attack: New Vulnerability in AMD SEV Exposes Encrypted VMs

14/11/2023 0 Comments 0 tags

A group of academics has disclosed a new “software fault attack” on AMD’s Secure Encrypted Virtualization (SEV) technology that could be potentially exploited by threat actors to infiltrate encrypted virtual

New BiBi-Windows Wiper Targets Windows Systems in Pro-Hamas Attacks

13/11/2023 0 Comments 0 tags

Cybersecurity researchers have warned about a Windows version of a wiper malware that was previously observed targeting Linux systems in cyber attacks aimed at Israel. Dubbed BiBi-Windows Wiper by BlackBerry, the wiper

Major Phishing-as-a-Service Syndicate ‘BulletProofLink’ Dismantled by Malaysian Authorities

13/11/2023 0 Comments 0 tags

Malaysian law enforcement authorities have announced the takedown of a phishing-as-a-service (PhaaS) operation called BulletProofLink. The Royal Malaysia Police said the effort, which was carried out with assistance from the Australian Federal Police

Chinese Hackers Launch Covert Espionage Attacks on 24 Cambodian Organizations

13/11/2023 0 Comments 0 tags

Cybersecurity researchers have discovered what they say is malicious cyber activity orchestrated by two prominent Chinese nation-state hacking groups targeting 24 Cambodian government organizations. “This activity is believed to be