“Cyber warfare is as much about psychological strategy as technical prowess.”
― James Scott
-
PlushDaemon APT Targets South Korean VPN Provider in Supply Chain Attack [email protected] (The Hacker News)
A previously undocumented China-aligned advanced persistent threat (APT) group named PlushDaemon has been linked to a supply chain attack targeting a South Korean virtual private network (VPN) provider in 2023, according to new findings from ESET. “The attackers replaced the legitimate installer with one that also deployed the group’s signature implant that we have named…
-
Oracle Releases January 2025 Patch to Address 318 Flaws Across Major Products [email protected] (The Hacker News)
Oracle is urging customers to apply its January 2025 Critical Patch Update (CPU) to address 318 new security vulnerabilities spanning its products and services. The most severe of the flaws is a bug in the Oracle Agile Product Lifecycle Management (PLM) Framework (CVE-2025-21556, CVSS score: 9.9) that could allow an attacker to seize control of…
-
Mirai Botnet Launches Record 5.6 Tbps DDoS Attack with 13,000+ IoT Device [email protected] (The Hacker News)
Web infrastructure and security company Cloudflare on Tuesday said it detected and blocked a 5.6 Terabit per second (Tbps) distributed denial-of-service (DDoS) attack, the largest ever attack to be reported to date. The UDP protocol-based attack took place on October 29, 2024, targeting one of its customers, an unnamed internet service provider (ISP) from Eastern…
-
10 cybersecurity certifications to boost your career in 2025
Post ContentRead More
-
Risk & Repeat: What is the future of CISA?
Post ContentRead More
-
Mirai Variant Murdoc_Botnet Exploits AVTECH IP Cameras and Huawei Routers [email protected] (The Hacker News)
Cybersecurity researchers have warned of a new large-scale campaign that exploits security flaws in AVTECH IP cameras and Huawei HG532 routers to rope the devices into a Mirai botnet variant dubbed Murdoc_Botnet. The ongoing activity “demonstrates enhanced capabilities, exploiting vulnerabilities to compromise devices and establish expansive botnet networks,” Qualys security researcher ShilpeshRead More
-
13,000 MikroTik Routers Hijacked by Botnet for Malspam and Cyberattacks [email protected] (The Hacker News)
A global network of about 13,000 hijacked Mikrotik routers has been employed as a botnet to propagate malware via spam campaigns, the latest addition to a list of botnets powered by MikroTik devices. The activity “take[s] advantage of misconfigured DNS records to pass email protection techniques,” Infoblox security researcher David Brunsdon said in a technical…
-
Ex-CIA Analyst Pleads Guilty to Sharing Top-Secret Data with Unauthorized Parties [email protected] (The Hacker News)
A former analyst working for the U.S. Central Intelligence Agency (CIA) pleaded guilty to transmitting top secret National Defense Information (NDI) to individuals who did not have the necessary authorization to receive it and attempted to cover up the activity. Asif William Rahman, 34, of Vienna, was an employee of the CIA since 2016 and…
-
HackGATE: Setting New Standards for Visibility and Control in Penetration Testing Projects [email protected] (The Hacker News)
Imagine receiving a penetration test report that leaves you with more questions than answers. Questions like, “Were all functionalities of the web app tested?” or ” Were there any security issues that could have been identified during testing?” often go unresolved, raising concerns about the thoroughness of the security testing. This frustration is common among…
-
PNGPlug Loader Delivers ValleyRAT Malware Through Fake Software Installers [email protected] (The Hacker News)
Cybersecurity researchers are calling attention to a series of cyber attacks that have targeted Chinese-speaking regions like Hong Kong, Taiwan, and Mainland China with a known malware called ValleyRAT. The attacks leverage a multi-stage loader dubbed PNGPlug to deliver the ValleyRAT payload, Intezer said in a technical report published last week. The infection chain commences…
“Security used to be an inconvenience sometimes, but now it’s a necessity all the time.”
― Martina Navratilova