Lazarus’s Shadow: identifying six north korean threat groups
Lazarus Group, a notorious Advanced Persistent Threat (APT) group, has been linked to the North Korean government and its intelligence agency. This group has engaged in a wide...
Phishing attacks get smarter: attackers exploit HTTP response headers
Cybersecurity researchers at Unit 42 have uncovered a sophisticated new phishing technique that leverages HTTP response headers to deliver malicious webpages. This technique poses a significant threat to...
Critical Active Directory certificate services vulnerabilities: implications and mitigation strategies
Microsoft’s Active Directory Certificate Services (AD CS), a PKI implementation in Active Directory environments, has been found to contain critical vulnerabilities that can enable attackers to gain long-term...
Ransomware group breaches major chinese bank in London
The Hunters International ransomware group has allegedly compromised the London branch of the Industrial and Commercial Bank of China (ICBC). This alarming breach highlights the escalating threats faced...
Critical vulnerability compromises the security of .MOBI top-level domain
A recent vulnerability discovery has exposed a glaring security flaw in the .MOBI domain name ecosystem. This vulnerability, stemming from an expired WHOIS server domain, has allowed a...
Threat landscape: EV charging infrastructure under attack
As electric vehicles (EVs) gain traction, their reliance on interconnected systems and widespread public charging infrastructure introduces significant cybersecurity risks. Vulnerabilities inherent in EV software and charging stations...
Browser-based credential theft: a growing threat
In the evolving cybersecurity landscape, web browsers have become a primary target for cybercriminals seeking to steal users’ credentials. This shift has significant implications for individuals and organizations...
RansomHub’s malicious use of TDSSKiller to bypass endpoint detection and response (EDR)
Kaspersky Lab’s TDSSKiller is a widely used free utility for detecting and removing rootkits. However, a recent cyberattack campaign by the RansomHub ransomware gang has leveraged TDSSKiller to...