Kinsing Actors Exploiting Recent Linux Flaw to Breach Cloud Environments

03/11/2023 0 Comments 0 tags

The threat actors linked to Kinsing have been observed attempting to exploit the recently disclosed Linux privilege escalation flaw called Looney Tunables as part of a “new experimental campaign” designed to breach

Turla Updates Kazuar Backdoor with Advanced Anti-Analysis to Evade Detection

02/11/2023 0 Comments 0 tags

The Russia-linked hacking crew known as Turla has been observed using an updated version of a known second-stage backdoor referred to as Kazuar. The new findings come from Palo Alto

North Korean Hackers Targeting Crypto Experts with KANDYKORN macOS Malware

02/11/2023 0 Comments 0 tags

State-sponsored threat actors from the Democratic People’s Republic of Korea (DPRK) have been found targeting blockchain engineers of an unnamed crypto exchange platform via Discord with a novel macOS malware

Iranian Cyber Espionage Group Targets Financial and Government Sectors in Middle East

02/11/2023 0 Comments 0 tags

A threat actor affiliated with Iran’s Ministry of Intelligence and Security (MOIS) has been observed waging a sophisticated cyber espionage campaign targeting financial, government, military, and telecommunications sectors in the

Hands on Review: LayerX’s Enterprise Browser Security Extension

02/11/2023 0 Comments 0 tags

The browser has become the main work interface in modern enterprises. It’s where employees create and interact with data, and how they access organizational and external SaaS and web apps.

Researchers Expose Prolific Puma’s Underground Link Shortening Service

02/11/2023 0 Comments 0 tags

A threat actor known as Prolific Puma has been maintaining a low profile and operating an underground link shortening service that’s offered to other threat actors for at least over the past

HelloKitty Ransomware Group Exploiting Apache ActiveMQ Vulnerability

02/11/2023 0 Comments 0 tags

Cybersecurity researchers are warning of suspected exploitation of a recently disclosed critical security flaw in the Apache ActiveMQ open-source message broker service that could result in remote code execution. “In

FIRST Announces CVSS 4.0 – New Vulnerability Scoring System

02/11/2023 0 Comments 0 tags

The Forum of Incident Response and Security Teams (FIRST) has officially announced CVSS v4.0, the next generation of the Common Vulnerability Scoring System standard, more than eight years after the release

Researchers Find 34 Windows Drivers Vulnerable to Full Device Takeover

02/11/2023 0 Comments 0 tags

As many as 34 unique vulnerable Windows Driver Model (WDM) and Windows Driver Frameworks (WDF) drivers could be exploited by non-privileged threat actors to gain full control of the devices

Iran’s MuddyWater Targets Israel in New Spear-Phishing Cyber Campaign

02/11/2023 0 Comments 0 tags

The Iranian nation-state actor known as MuddyWater has been linked to a new spear-phishing campaign targeting two Israeli entities to ultimately deploy a legitimate remote administration tool from N-able called Advanced Monitoring Agent.