CyberArk

Alert: Chinese-Speaking Hackers Pose as UAE Authority in Latest Smishing Wave

December 21, 2023 The Chinese-speaking threat actors behind Smishing Triad have been observed masquerading as the United Arab Emirates Federal Authority for Identity and Citizenship to send malicious SMS messages with the ultimate goal of gathering sensitive information from residents and foreigners in the country. “These criminals send malicious links to their victims’ mobile devices through SMS …

Alert: Chinese-Speaking Hackers Pose as UAE Authority in Latest Smishing Wave Read More »

3,500 Arrested in Global Operation HAECHI-IV Targeting Financial Criminals

December 21, 2023 A six-month-long international police operation codenamed HAECHI-IV has resulted in the arrests of nearly 3,500 individuals and seizures worth $300 million across 34 countries. The exercise, which took place from July through December 2023, took aim at various types of financial crimes such as voice phishing, romance scams, online sextortion, investment fraud, money laundering …

3,500 Arrested in Global Operation HAECHI-IV Targeting Financial Criminals Read More »

New Go-Based JaskaGO Malware Targeting Windows and macOS Systems

December 21, 2023 A new Go-based information stealer malware called JaskaGO has emerged as the latest cross-platform threat to infiltrate both Windows and Apple macOS systems. AT&T Alien Labs, which made the discovery, said the malware is “equipped with an extensive array of commands from its command-and-control (C&C) server.” Artifacts designed for macOS were first observed in July Article …

New Go-Based JaskaGO Malware Targeting Windows and macOS Systems Read More »

Modern CISO Challenges: Fostering a Security Culture in Global Organizations

Date: December 14, 2023 Time: 9.00 AM EST | 3.00 PM CET | 7:30 PM IST Topic: Modern CISO Challenges: Fostering a Security Culture in Global Organizations Watch Now Abstract: Multicultural teams are crucial in the current business environment, which transcends geographical boundaries but also comes with distinctive challenges. The modern chief information security officer…

The post Modern CISO Challenges: Fostering a Security Culture in Global Organizations appeared first on Cybersecurity Exchange.

FBI Takes Down BlackCat Ransomware, Releases Free Decryption Tool

December 20, 2023 The U.S. Justice Department (DoJ) has officially announced the disruption of the BlackCat ransomware operation and released a decryption tool that victims can use to regain access to files locked by the malware. Court documents show that the U.S. Federal Bureau of Investigation (FBI) enlisted the help of a confidential human source (CHS) to …

FBI Takes Down BlackCat Ransomware, Releases Free Decryption Tool Read More »

Behind the Scenes of Matveev’s Ransomware Empire: Tactics and Team

December 20, 2023 Cybersecurity researchers have shed light on the inner workings of the ransomware operation led by Mikhail Pavlovich Matveev, a Russian national who was indicted by the U.S. government earlier this year for his alleged role in launching thousands of attacks across the world. Matveev, who resides in Saint Petersburg and is known by the …

Behind the Scenes of Matveev’s Ransomware Empire: Tactics and Team Read More »

Hackers Abusing GitHub to Evade Detection and Control Compromised Hosts

December 20, 2023 Threat actors are increasingly making use of GitHub for malicious purposes through novel methods, including abusing secret Gists and issuing malicious commands via git commit messages. “Malware authors occasionally place their samples in services like Dropbox, Google Drive, OneDrive, and Discord to host second stage malware and sidestep detection tools,” ReversingLabs researcher …

Hackers Abusing GitHub to Evade Detection and Control Compromised Hosts Read More »

Are We Ready to Give Up on Security Awareness Training?

December 20, 2023 Some of you have already started budgeting for 2024 and allocating funds to security areas within your organization. It is safe to say that employee security awareness training is one of the expenditure items, too. However, its effectiveness is an open question with people still engaging in insecure behaviors at the workplace. …

Are We Ready to Give Up on Security Awareness Training? Read More »

Iranian Hackers Using MuddyC2Go in Telecom Espionage Attacks Across Africa

December 20, 2023 The Iranian nation-state actor known as MuddyWater has leveraged a newly discovered command-and-control (C2) framework called MuddyC2Go in its attacks on the telecommunications sector in Egypt, Sudan, and Tanzania. The Symantec Threat Hunter Team, part of Broadcom, is tracking the activity under the name Seedworm, which is also tracked under the monikers Boggy Serpens, Cobalt Article …

Iranian Hackers Using MuddyC2Go in Telecom Espionage Attacks Across Africa Read More »

New Malvertising Campaign Distributing PikaBot Disguised as Popular Software

December 20, 2023 The malware loader known as PikaBot is being distributed as part of a malvertising campaign targeting users searching for legitimate software like AnyDesk. “PikaBot was previously only distributed via malspam campaigns similarly to QakBot and emerged as one of the preferred payloads for a threat actor known as TA577,” Malwarebytes’ Jérôme Segura said. The malware family, …

New Malvertising Campaign Distributing PikaBot Disguised as Popular Software Read More »

Open Whatsapp chat
Whatsapp Us
Chat with us for faster replies.