Blog
New P2PInfect Worm Targets Redis Servers with Undocumented Breach Methods
The P2PInfect peer-to-peer (P2) worm has been observed employing previously undocumented initial access methods to breach susceptible Redis servers and rope them into a botnet. "The malware compromises exposed instances of the Redis data store by exploiting the...
Cyble Raises 24 Million in Series B Funding: Leveraging AI and Threat Intelligence to Revolutionize Cybersecurity
In a major boost to its cybersecurity efforts, Cyble has announced raising $24 million in a Series B funding round. The news was first reported by TechCrunch. Cyble is renowned as a “threat intelligence provider”, leveraging AI and Dark Web Monitoring to stay ahead of...
Ztna can be More Than a VPN Replacement for Application Access
Zero Trust Network Access (ZTNA) should leverage contextual information, implement continuous authentication mechanisms, and be application-aware to make access decisions and reduce the risk of unauthorized access.
North Kingstown Data Breach: Town Alerts 103,000 Citizens
North Kingstown, town in Washington County, Rhode Island, United States, has responded to allay concerns and reassured approximately 103,000 individuals who recently received notifications regarding the North Kingstown data breach. Authorities have emphasized that...
Patchwork Hackers Target Chinese Research Organizations Using EyeShell Backdoor
EyeShell is a .NET-based modular backdoor that can contact a remote C2 server and execute commands to enumerate files and directories, download and upload files to and from the host, execute a specified file, delete files, and capture screenshots.
Webinar: Riding the vCISO Wave: How to Provide vCISO Services
Demand for Virtual CISO services is soaring. According to Gartner, the use of vCISO services among small and mid-size businesses and non-regulated enterprises was expected to grow by a whopping 1900% in just one year, from only 1% in 2021 to 20% in 2022! Offering...
It’s Confirmed: Metabase Critical Vulnerability Found Exploited!
It’s confirmed. A Metabase critical vulnerability, which could lead to pre-authenticated remote code execution on vulnerable installations, have been found exploited in the wild. Vulnerability alert service inTheWild has listed the Metabase critical vulnerability,...
Patchwork Hackers Target Chinese Research Organizations Using EyeShell Backdoor
Threat actors associated with the hacking crew known as Patchwork have been spotted targeting universities and research organizations in China as part of a recently observed campaign. The activity, according to KnownSec 404 Team, entailed the use of a backdoor...
Senate opens path for a cyber-focused military branch
The possibility of a U.S. Cyber Force moved one step closer to reality on Thursday after the Senate approved its version of a massive defense policy bill. The $886 billion National Defense Authorization Act passed in an 86-11 vote.
Negotiations Failed? Clop Ransomware Posts Data of Johns Hopkins University, Honeywell, and 54 Others
In what appears to be the result of failed ransom negotiations, the Clop ransomware group has now started leaking data of the victim organizations. In a new series of posts, the groups claim to reveal data from the Johns Hopkins University, Honeywell, and TomTom,...
FREE GUIDE