Critical Vulnerabilities Uncovered in Open Source CasaOS Cloud Software

18/10/2023 0 Comments 0 tags

Two critical security flaws discovered in the open-source CasaOS personal cloud software could be successfully exploited by attackers to achieve arbitrary code execution and take over susceptible systems. The vulnerabilities, tracked as CVE-2023-37265 and CVE-2023-37266,

Discord: A Playground for Nation-State Hackers Targeting Critical Infrastructure

18/10/2023 0 Comments 0 tags

In what’s the latest evolution of threat actors abusing legitimate infrastructure for nefarious ends, new findings show that nation-state hacking groups have entered the fray in leveraging the social platform

D-Link Confirms Data Breach: Employee Falls Victim to Phishing Attack

18/10/2023 0 Comments 0 tags

Taiwanese networking equipment manufacturer D-Link has confirmed a data breach that led to the exposure of what it said is “low-sensitivity and semi-public information.” “The data was confirmed not from

Microsoft to Phase Out NTLM in Favor of Kerberos for Stronger Authentication

16/10/2023 0 Comments 0 tags

Microsoft has announced that it plans to eliminate NT LAN Manager (NTLM) in Windows 11 in the future, as it pivots to alternative methods for authentication and bolster security. “The focus is

Binance’s Smart Chain Exploited in New ‘EtherHiding’ Malware Campaign

16/10/2023 0 Comments 0 tags

Threat actors have been observed serving malicious code by utilizing Binance’s Smart Chain (BSC) contracts in what has been described as the “next level of bulletproof hosting.” The campaign, detected

FBI, CISA Warn of Rising AvosLocker Ransomware Attacks Against Critical Infrastructure

14/10/2023 0 Comments 0 tags

The AvosLocker ransomware gang has been linked to attacks against critical infrastructure sectors in the U.S., with some of them detected as recently as May 2023. That’s according to a

DarkGate Malware Spreading via Messaging Services Posing as PDF Files

14/10/2023 0 Comments 0 tags

A piece of malware known as DarkGate has been observed being spread via instant messaging platforms such as Skype and Microsoft Teams. In these attacks, the messaging apps are used to deliver

Ransomware Attacks Double: Are Companies Prepared for 2024’s Cyber Threats?

14/10/2023 0 Comments 0 tags

Ransomware attacks have only increased in sophistication and capabilities over the past year. From new evasion and anti-analysis techniques to stealthier variants coded in new languages, ransomware groups have adapted

Researchers Unveil ToddyCat’s New Set of Tools for Data Exfiltration

14/10/2023 0 Comments 0 tags

The advanced persistent threat (APT) actor known as ToddyCat has been linked to a new set of malicious tools that are designed for data exfiltration, offering a deeper insight into the hacking

New PEAPOD Cyberattack Campaign Targeting Women Political Leaders

14/10/2023 0 Comments 0 tags

European Union military personnel and political leaders working on gender equality initiatives have emerged as the target of a new campaign that delivers an updated version of RomCom RAT called PEAPOD.