Category: Uncategorized
-

Russian Cyber Adversary BlueCharlie Alters Infrastructure in Response to Disclosures [email protected] (The Hacker News)
A Russa-nexus adversary has been linked to 94 new domains, suggesting that the group is actively modifying its infrastructure in response to public disclosures about its activities. Cybersecurity firm Recorded Future linked the new infrastructure to a threat actor it tracks under the name BlueCharlie, a hacking crew that’s broadly known by the names Blue Callisto,…
-
Cyble Raises $24 Million for AI-Powered Threat Intelligence Platform Ionut Arghire
Threat intelligence firm Cyble has raised $24 million in a Series B funding round co-led by Blackbird Ventures and King River Capital. The post Cyble Raises $24 Million for AI-Powered Threat Intelligence Platform appeared first on SecurityWeek. Read More
-

Phishers Exploit Salesforce’s Email Services Zero-Day in Targeted Facebook Campaign [email protected] (The Hacker News)
A sophisticated Facebook phishing campaign has been observed exploiting a zero-day flaw in Salesforce’s email services, allowing threat actors to craft targeted phishing messages using the company’s domain and infrastructure. “Those phishing campaigns cleverly evade conventional detection methods by chaining the Salesforce vulnerability and legacy quirks in Facebook’s Web Games platform,”Read More
-

Industrial Control Systems Vulnerabilities Soar: Over One-Third Unpatched in 2023 [email protected] (The Hacker News)
About 34% of security vulnerabilities impacting industrial control systems (ICSs) that were reported in the first half of 2023 have no patch or remediation, registering a significant increase from 13% the previous year. According to data compiled by SynSaber, a total of 670 ICS product flaws were reported via the U.S. Cybersecurity and Infrastructure Security…
-
Firefox 116 Patches High-Severity Vulnerabilities Ionut Arghire
Firefox 116 was released with patches for 14 CVEs, including nine high-severity vulnerabilities, some of which can lead to remote code execution or sandbox escapes. The post Firefox 116 Patches High-Severity Vulnerabilities appeared first on SecurityWeek. Read More
-
Google AMP Abused in Phishing Attacks Aimed at Enterprise Users Ionut Arghire
Threat actors are using Google AMP URLs in phishing campaigns as a new detection evasion tactic. The post Google AMP Abused in Phishing Attacks Aimed at Enterprise Users appeared first on SecurityWeek. Read More
-

Top Industries Significantly Impacted by Illicit Telegram Networks [email protected] (The Hacker News)
In recent years the rise of illicit activities conducted within online messaging platforms has become a growing concern for countless industries. One of the most notable platforms that has been host to many malicious actors and nefarious activities has been Telegram. Thanks to its accessibility, popularity, and user anonymity, Telegram has attracted a large number…
-

Researchers Uncover AWS SSM Agent Misuse as a Covert Remote Access Trojan [email protected] (The Hacker News)
Cybersecurity researchers have discovered a new post-exploitation technique in Amazon Web Services (AWS) that allows the AWS Systems Manager Agent (SSM Agent) to be run as a remote access trojan on Windows and Linux environments “The SSM agent, a legitimate tool used by admins to manage their instances, can be re-purposed by an attacker who…
-

Iranian Company Cloudzy Accused of Aiding Cybercriminals and Nation-State Hackers [email protected] (The Hacker News)
Services offered by an obscure Iranian company known as Cloudzy are being leveraged by multiple threat actors, including cybercrime groups and nation-state crews. “Although Cloudzy is incorporated in the United States, it almost certainly operates out of Tehran, Iran – in possible violation of U.S. sanctions – under the direction of someone going by the…
-
Ivanti Zero-Day Exploited by APT Since at Least April in Norwegian Government Attack Eduard Kovacs
The recently patched Ivanti EPMM zero-day CVE-2023-35078 has been exploited to hack the Norwegian government since at least April 2023. The post Ivanti Zero-Day Exploited by APT Since at Least April in Norwegian Government Attack appeared first on SecurityWeek. Read More
