Category: Uncategorized
-
What is tailgating (piggybacking)?
Post ContentRead More
-
Russian RomCom Attacks Target Ukrainian Government with New SingleCamper RAT Variant [email protected] (The Hacker News)
The Russian threat actor known as RomCom has been linked to a new wave of cyber attacks aimed at Ukrainian government agencies and unknown Polish entities since at least late 2023. The intrusions are characterized by the use of a variant of the RomCom RAT dubbed SingleCamper (aka SnipBot or RomCom 5.0), said Cisco Talos,…
-
Joe Sullivan: CEOs must be held accountable for security too
Post ContentRead More
-
DOJ charges alleged Anonymous Sudan ringleaders
Post ContentRead More
-
Researchers Uncover Cicada3301 Ransomware Operations and Its Affiliate Program [email protected] (The Hacker News)
Cybersecurity researchers have gleaned additional insights into a nascent ransomware-as-a-service (RaaS) called Cicada3301 after successfully gaining access to the group’s affiliate panel on the dark web. Singapore-headquartered Group-IB said it contacted the threat actor behind the Cicada3301 persona on the RAMP cybercrime forum via the Tox messaging service after the latter put out anRead More
-
September a quiet month for ransomware attacks
Post ContentRead More
-
SideWinder APT Strikes Middle East and Africa With Stealthy Multi-Stage Attack [email protected] (The Hacker News)
An advanced persistent threat (APT) actor with suspected ties to India has sprung forth with a flurry of attacks against high-profile entities and strategic infrastructures in the Middle East and Africa. The activity has been attributed to a group tracked as SideWinder, which is also known as APT-C-17, Baby Elephant, Hardcore Nationalist, Leafperforator, Rattlesnake, Razor…
-
U.S. Charges Two Sudanese Brothers for Record 35,000 DDoS Attacks [email protected] (The Hacker News)
Federal prosecutors in the U.S. have charged two Sudanese brothers with running a distributed denial-of-service (DDoS) botnet for hire that conducted a record 35,000 DDoS attacks in a single year, including those that targeted Microsoft’s services in June 2023. The attacks, which were facilitated by Anonymous Sudan’s “powerful DDoS tool,” singled out critical infrastructure, corporate…
-
Critical Kubernetes Image Builder Vulnerability Exposes Nodes to Root Access Risk [email protected] (The Hacker News)
A critical security flaw has been disclosed in the Kubernetes Image Builder that, if successfully exploited, could be abused to gain root access under certain circumstances. The vulnerability, tracked as CVE-2024-9486 (CVSS score: 9.8), has been addressed in version 0.1.38. The project maintainers acknowledged Nicolai Rybnikar for discovering and reporting the vulnerability. “A security issueRead…
-
Hackers Abuse EDRSilencer Tool to Bypass Security and Hide Malicious Activity [email protected] (The Hacker News)
Threat actors are attempting to abuse the open-source EDRSilencer tool as part of efforts to tamper endpoint detection and response (EDR) solutions and hide malicious activity. Trend Micro said it detected “threat actors attempting to integrate EDRSilencer in their attacks, repurposing it as a means of evading detection.” EDRSilencer, inspired by the NightHawk FireBlock tool…