Hamas Hackers Sling Stealthy Spyware Across Egypt, Palestine post, juni 17, 2024juli 3, 2025 Hamas-linked advanced persistent threat (APT) group Arid Viper has been observed using Android spyware AridSpy dating back to 2022. Now, for the first time, researchers have provided a full analysis of the malware’s previously mysterious later stages. Continue Reading
Truist Bank confirms breach after stolen data shows up on hacking forum post, juni 13, 2024juni 14, 2024 Leading U.S. commercial bank Truist confirmed its systems were breached in an October 2023 cyberattack after a threat actor posted some of the company’s data for sale on a hacking forum. Headquartered in Charlotte, North Carolina, Truist Bank was formed after SunTrust Banks and BB&T (Branch Banking and Trust Company) merged… Continue Reading
PoC Exploit Emerges for Critical RCE Bug in Ivanti Endpoint Manager post, juni 13, 2024juni 14, 2024 A new month, a new high-risk Ivanti bug for attackers to exploit — this time, an SQL injection issue in its centralized endpoint manager. Researchers have developed a proof-of-concept (PoC) exploit for a critical vulnerability in Ivanti Endpoint Manager that was recently disclosed — potentially setting the stage for mass… Continue Reading
Rockwell’s ICS Directive Comes As Critical Infrastructure Risk Peaks post, juni 13, 2024februari 24, 2025 Critical infrastructure is facing increasingly disruptive threats to physical processes, while thousands of devices are online with weak authentication and riddled with exploitable bugs. Continue Reading
Ransomware crew may have exploited Windows make-me-admin bug as a zero-day post, juni 12, 2024februari 24, 2025 The Black Basta ransomware gang may have exploited a now-patched Windows privilege escalation bug as a zero-day, according to Symantec’s threat hunters. Microsoft plugged the hole in the Windows Error Reporting Service in the March Patch Tuesdsay, and warned orgs that the vulnerability, tracked as CVE-2024-26169, could allow an attacker to… Continue Reading
Cylance clarifies data breach details, except where the data came from post, juni 11, 2024juni 12, 2024 BlackBerry-owned cybersecurity shop Cylance says the data allegedly belonging to it and being sold on a crime forum doesn’t endanger customers, yet it won’t say where the information was stored originally. Saying very little about where the data came from, Cylance says it is related to company marketing between 2015… Continue Reading
Hackers leggen websites politieke partijen plat op dag van Europese verkiezingen post, juni 6, 2024juni 12, 2024 De websites van CDA, PVV en FVD zijn donderdag een tijdje niet of slechter bereikbaar geweest vanwege ddos-aanvallen. Russische hackers van de groep HackNet hebben de aanval op Telegram opgeëist. Continue Reading
Chinese State-Backed Cyber Espionage Targets Southeast Asian Government post, juni 5, 2024 An unnamed high-profile government organization in Southeast Asia emerged as the target of a “complex, long-running” Chinese state-sponsored cyber espionage operation codenamed Crimson Palace. Continue Reading
RansomHub extortion gang linked to now-defunct Knight ransomware post, juni 5, 2024 Security researchers analyzing the relatively new RansomHub ransomware-as-a-service believe that it has evoloved from the currently defunct Knight ransomware project. RansomHub has a short history and operated mainly as a data theft and extortion group that sells stolen files to the highest bidder. Continue Reading
Phishing for Gold: Cyber Threats Facing the 2024 Paris Olympics post, juni 5, 2024juni 12, 2024 Mandiant assesses with high confidence that the Paris Olympics faces an elevated risk of cyber threat activity, including cyber espionage, disruptive and destructive operations, financially-motivated activity, hacktivism, and information operations. Continue Reading