French Diplomatic Entities Targeted by Russian Threat Actor Nobelium
Russian threat actor Nobelium, also known as Midnight Blizzard, has been targeting French diplomatic entities and public organizations since 2021, utilizing compromised email accounts and conducting phishing campaigns to access networks and exfiltrate intelligence.
View full story…
LockBit 3.0 Leads Surge in Ransomware Attacks in May 2024
LockBit 3.0 reclaimed its position as the dominant threat actor, launching 176 attacks and surpassing other prominent groups, with new threat actors like Arcus Media and Underground entering the top 10 list.
View full story…
Latest Cybernews
Markopolo’s Cryptocurrency Scam Targets Users with Vortax Malware
A malicious campaign led by threat actor markopolo targets cryptocurrency users with Vortax malware, deploying Rhadamanthys and StealC on Windows and macOS systems.
View full story…
Mailcow Mail Server Vulnerabilities Identified by SonarSource
SonarSource identifies two security vulnerabilities in Mailcow mail server suite, allowing for remote code execution and XSS attacks.
View full story…
Phishing Campaign in China Targets Citizens with Fake Ministry Documents
Cyble Research and Intelligence Labs uncovers phishing campaign distributing malicious Microsoft Word files via QR codes, prompting victims to provide personal and financial information for unauthorized transactions.
View full story…
G7 Leaders Pledge to Establish Collective Cybersecurity Framework for Energy Sector
President Biden and major economies commit to enhancing cybersecurity of energy technologies to protect against cyberattacks and disruptions.
View full story…
Kraken Cryptocurrency Exchange Faces $3 Million Security Breach
Kraken cryptocurrency exchange experienced a security incident involving a bug that allowed users to artificially inflate their account balances, resulting in the theft of $3 million in digital assets.
View full story…
Chinese Cyber Espionage Actor UNC3886 Exploiting Zero-Day Vulnerabilities in Fortinet, Ivanti, and VMware Devices
UNC3886, a China-linked cyber espionage actor, has been identified exploiting zero-day vulnerabilities in Fortinet, Ivanti, and VMware devices to maintain access to compromised environments.
View full story…
New Case Study Reveals Risks of Unmanaged Google Tag Manager Tags
Neglecting proper GTM security practices can lead to major security breaches and data leaks, emphasizing the importance of regular audits, script updates, secure permissions, user training, and monitoring.
View full story…
Latest Cybernews
Study Reveals 95% of Organizations Face Security Issues with Production APIs
Recent study by Salt Security highlights significant security issues with production APIs, leading to breaches and a lack of advanced API security programs.
View full story…
New Malware Campaign Targets Exposed Docker APIs for Cryptocurrency Mining
A threat actor is deploying various payloads, including Golang binaries and shell scripts, to exploit publicly exposed Docker API endpoints for remote access and cryptocurrency mining.
View full story…
Record 100% Exploitation Rate of NGINX and Citrix Load Balancers Raises Concerns
Threat actors are increasingly targeting edge devices such as load balancers, with NGINX and Citrix products showing high exploitation rates.
View full story…
Critical Security Vulnerabilities Addressed in VMware Products
VMware and Broadcom have addressed critical security vulnerabilities in VMware products, including heap-overflow issues in the DCE/RPC protocol and a local privilege escalation bug, affecting vCenter Server and Cloud Foundation.
View full story…