2024

GuardZoo spyware used by Houthis to target military personnel

GuardZoo spyware used by Houthis to target military personnel 2024-07-09 at 15:16 By Help Net Security Lookout discovered GuardZoo, Android spyware targeting Middle Eastern military personnel. This campaign leverages malicious apps with military and religious themes to lure victims via social engineering on mobile devices. While researchers are still actively analyzing data, thus far, they […]

GuardZoo spyware used by Houthis to target military personnel Read More »

Hackers Exploiting Jenkins Script Console for Cryptocurrency Mining Attacks

Hackers Exploiting Jenkins Script Console for Cryptocurrency Mining Attacks 2024-07-09 at 15:16 By Cybersecurity researchers have found that it’s possible for attackers to weaponize improperly configured Jenkins Script Console instances to further criminal activities such as cryptocurrency mining. “Misconfigurations such as improperly set up authentication mechanisms expose the ‘/script’ endpoint to attackers,” Trend Micro’s Shubham

Hackers Exploiting Jenkins Script Console for Cryptocurrency Mining Attacks Read More »

Critical vulnerability in the RADIUS protocol leaves networking equipment open to attack

Critical vulnerability in the RADIUS protocol leaves networking equipment open to attack 2024-07-09 at 15:01 By Help Net Security A new critical security vulnerability in the RADIUS protocol, dubbed BlastRADIUS, leaves most networking equipment open to Man-in-the-Middle (MitM) attacks. While the vulnerability can be difficult to exploit, the possible impact of an exploit is substantial.

Critical vulnerability in the RADIUS protocol leaves networking equipment open to attack Read More »

Users rage as Microsoft announces retirement of Office 365 connectors within Teams

Users rage as Microsoft announces retirement of Office 365 connectors within Teams 2024-07-09 at 14:47 By Richard Speed Expletives fly as admins deal with recommendation to move to Power Automate workflows Microsoft has thrown some enterprises into a spin after confirming that, with only a few months’ notice, Office 365 connectors within Teams will be

Users rage as Microsoft announces retirement of Office 365 connectors within Teams Read More »

Chinese APT40 group swifly leverages public PoC exploits

Chinese APT40 group swifly leverages public PoC exploits 2024-07-09 at 14:46 By Zeljka Zorz Chinese state-sponsored cyber group APT40 is amazingly fast at adapting public proof-of-concept (PoC) exploits for vulnerabilities in widely used software, an advisory released by intelligence and cybersecurity agencies from eight countries warns. The group, which is also known as Kryptonite Panda

Chinese APT40 group swifly leverages public PoC exploits Read More »

Global Coalition Blames China’s APT40 for Hacking Government Networks

Global Coalition Blames China’s APT40 for Hacking Government Networks 2024-07-09 at 14:16 By Ionut Arghire Seven nations are backing Australia in calling out a China-linked hacking group for compromising government networks. The post Global Coalition Blames China’s APT40 for Hacking Government Networks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

Global Coalition Blames China’s APT40 for Hacking Government Networks Read More »

How to Fix a Dysfunctional Security Culture

How to Fix a Dysfunctional Security Culture 2024-07-09 at 14:16 By Stu Sjouwerman Moving from a state of indifference about security to a place where users actively champion it can be transformed through a focused effort. The post How to Fix a Dysfunctional Security Culture appeared first on SecurityWeek. This article is an excerpt from

How to Fix a Dysfunctional Security Culture Read More »

Houthi rebels are operating their own GuardZoo spyware

Houthi rebels are operating their own GuardZoo spyware 2024-07-09 at 14:01 By Brandon Vigliarolo Fairly ‘low budget’, unsophisticated malware, say researchers, but it can collect the same data as Pegasus Interview  When it comes to surveillance malware, sophisticated spyware with complex capabilities tends to hog the limelight – for example NSO Group’s Pegasus, which is

Houthi rebels are operating their own GuardZoo spyware Read More »

GuardZoo Malware Targets Over 450 Middle Eastern Military Personnel

GuardZoo Malware Targets Over 450 Middle Eastern Military Personnel 2024-07-09 at 14:01 By Military personnel from Middle East countries are the target of an ongoing surveillanceware operation that delivers an Android data-gathering tool called GuardZoo. The campaign, believed to have commenced as early as October 2019, has been attributed to a Houthi-aligned threat actor based

GuardZoo Malware Targets Over 450 Middle Eastern Military Personnel Read More »

Stellar Cyber Open XDR platform now supports BYODL

Stellar Cyber Open XDR platform now supports BYODL 2024-07-09 at 12:01 By Industry News Stellar Cyber announced that the Stellar Cyber Open XDR platform now supports “Bring Your Own Data Lake” (BYODL). This seamless integration allows organizations that have standardized their data storage framework on Splunk, Snowflake, Elastic, or AWS security data lake, or any

Stellar Cyber Open XDR platform now supports BYODL Read More »

UK minister recalls two planning decisions which blocked datacenter investment

UK minister recalls two planning decisions which blocked datacenter investment 2024-07-09 at 11:31 By Lindsay Clark Deputy leader to act after promise of more business-friendly planning process The UK’s deputy prime minister is set to recall two planning decisions which have held up datacenter investment in the UK.… This article is an excerpt from The

UK minister recalls two planning decisions which blocked datacenter investment Read More »

Egnyte Copilot accelerates enterprise content collaboration

Egnyte Copilot accelerates enterprise content collaboration 2024-07-09 at 11:31 By Industry News Egnyte launched Egnyte Copilot, its AI-driven assistant designed to accelerate and transform enterprise content collaboration. Egnyte Copilot enables Egnyte customers to start engaging in AI-powered conversations with their own private and trusted data through a simple, turnkey solution while keeping that data internally

Egnyte Copilot accelerates enterprise content collaboration Read More »

Align strengthens defense against double-extortion ransomware tactics

Align strengthens defense against double-extortion ransomware tactics 2024-07-09 at 11:01 By Industry News Align adds a new exfiltration prevention feature to its Align Guardian Managed Detection and Response offering, powered by Adlumin. This innovation is designed to detect and stop attackers from exfiltrating data, providing a defense against modern ransomware tactics that employ double-extortion techniques.

Align strengthens defense against double-extortion ransomware tactics Read More »

Eldorado ransomware-as-a-service gang targets Linux, Windows systems

Eldorado ransomware-as-a-service gang targets Linux, Windows systems 2024-07-09 at 10:31 By Jessica Lyons US orgs bear the brunt of attacks by probably-Russian crew A ransomware-as-a-service operation dubbed “Eldorado” that encrypts files on both Linux and Windows machines has infected at least 16 organizations – primarily in the US – as of June.… This article is

Eldorado ransomware-as-a-service gang targets Linux, Windows systems Read More »

Regional Transport Office Phishing Scam Targets Android Users In India

Regional Transport Office Phishing Scam Targets Android Users In India 2024-07-09 at 10:31 By Neetha Key Takeaways  Overview  Since 2021, India has faced an ongoing cyber threat involving Android malware specifically targeting bank customers. Threat actors initially distributed this malware through SMS messages containing phishing links, which directed users to download malicious Android applications. Themes

Regional Transport Office Phishing Scam Targets Android Users In India Read More »

Cybersecurity Agencies Warn of China-linked APT40’s Rapid Exploit Adaptation

Cybersecurity Agencies Warn of China-linked APT40’s Rapid Exploit Adaptation 2024-07-09 at 10:01 By Cybersecurity agencies from Australia, Canada, Germany, Japan, New Zealand, South Korea, the U.K., and the U.S. have released a joint advisory about a China-linked cyber espionage group called APT40, warning about its ability to co-opt exploits for newly disclosed security flaws within

Cybersecurity Agencies Warn of China-linked APT40’s Rapid Exploit Adaptation Read More »

Scroll to Top