Blog
Tech Giant HP Enterprise Hacked by Russian Hackers Linked to DNC Breach
Hackers linked to the Kremlin, specifically the Russian state-sponsored group APT29, infiltrated Hewlett Packard Enterprise's cloud email environment to steal mailbox data from select individuals within the company.
China-backed Hackers Hijack Software Updates to Implant “NSPX30” Spyware
A previously undocumented China-aligned threat actor has been linked to a set of adversary-in-the-middle (AitM) attacks that hijack update requests from legitimate software to deliver a sophisticated implant named NSPX30. Slovak cybersecurity firm ESET is tracking the...
French Regulators Levy $34.7 Million Fine Against Amazon for Surveilling Employees
France's data protection authority, CNIL, has fined Amazon €32 million ($34.7 million) for excessive monitoring of employees in its warehouses and for not promptly deleting the data.
New CherryLoader Malware Mimics CherryTree to Deploy Privilege Escalation Exploits
The loader drops two publicly available privilege escalation tools, PrintSpoofer and JuicyPotatoNG, and uses encryption methods like XOR and AES to facilitate the attack chain.
Over 5,300 GitLab Servers Exposed to Zero-Click Account Takeover Attacks
The flaw affects several versions of GitLab and patches have already been released. The servers at risk are mainly located in the United States, Germany, Russia, China, France, the U.K., India, and Canada.
New CherryLoader Malware Mimics CherryTree to Deploy PrivEsc Exploits
A new Go-based malware loader called CherryLoader has been discovered by threat hunters in the wild to deliver additional payloads onto compromised hosts for follow-on exploitation. Arctic Wolf Labs, which discovered the new attack tool in two recent intrusions, said...
CISA Adds Atlassian Confluence Data Center Bug to Its Known Exploited Vulnerabilities Catalog
The vulnerability, tracked as CVE-2023-22527, allows remote attackers to execute arbitrary code on vulnerable Confluence installs. Atlassian has released patches to address the issue and recommends immediate action to update to the latest versions.
Tech Giant HP Enterprise Hacked by Russian Hackers Linked to DNC Breach
Hackers with links to the Kremlin are suspected to have infiltrated information technology company Hewlett Packard Enterprise's (HPE) cloud email environment to exfiltrate mailbox data. "The threat actor accessed and exfiltrated data beginning in May 2023 from a small...
Global Retailer BuyGoods.com Leaks User PII, KYC data
What’s worse, the exposed server also laid bare the personal records of customers and affiliates, containing highly sensitive Personally Identifiable Information (PII) and Know Your Customer (KYC) data.
Global Retailer BuyGoods.com Leaks User PII, KYC data
What’s worse, the exposed server also laid bare the personal records of customers and affiliates, containing highly sensitive Personally Identifiable Information (PII) and Know Your Customer (KYC) data.
FREE GUIDE