Brazilian business attacked from Water Makara campaign
A recent cyber threat report highlights the Water Makara campaign, a sophisticated spear-phishing attack specifically targeting Brazilian enterprises. This operation employs advanced social engineering tactics to deceive victims...
China accused of demaged undersea cable near Taiwan
Taiwan has recently accused a Chinese-owned cargo ship of deliberately damaging an undersea communication cable off its northeastern coast, an incident that underscores the vulnerabilities of the island’s...
Atos denies any breach of their systems, after SpaceBears ransomware claim
Atos, a prominent player in the global IT services sector, has recently found itself at the center of a cybersecurity controversy following allegations of a ransomware attack by...
DoS vulnerability CVE-2024-56332 in Next.js, update now
Next.js, a popular React framework, has recently addressed a critical denial-of-service (DoS) vulnerability identified as CVE-2024-56332. This security flaw was discovered in the server actions feature of Next.js,...
New NonEuclid RAT, anti-scan e persistent threat
The recent emergence of the NonEuclid Remote Access Trojan (RAT) has raised significant concerns within the cybersecurity community, with its sophisticated capabilities making it a formidable threat to...
Threat intelligence perspective of DORA Regulation
Team Cymru discusses the Digital Operational Resilience Act (DORA) and its implications from a threat intelligence perspective. DORA aims to enhance the digital resilience of financial entities within...
Glutton: a new PHP backdoor
On April 29, 2024, XLab’s threat analysis system detected unusual activities linked to a new malware named Glutton, designed to stealthily infiltrate popular PHP frameworks. This malware was...
3.1 million fake “stars” on GitHub projects
A recent study has unveiled a troubling trend on GitHub, revealing that over 3.1 million fake “stars” have been used to artificially inflate the popularity of certain projects....