Russians Used Brute Force Attacks Against Hundreds of Orgs: Security Agencies

Russians Used Brute Force Attacks Against Hundreds of Orgs: Security Agencies

Security agencies in the United States and United Kingdom issued an advisory on Thursday to warn organizations about an ongoing global campaign involving brute force techniques. The NSA, CISA, FBI and the UK’s National Cyber Security Centre (NCSC) have attributed the campaign to the Russian government, specifically a cyber espionage group linked to Russia’s General…

Attackers Increasingly Using Cobalt Strike

Attackers Increasingly Using Cobalt Strike

Cybercrime , Fraud Management & Cybercrime , Fraud Risk Management Report: Pen Testing Tool a Favorite Among Lower-Level Threat Groups Doug Olenick (DougOlenick) • June 30, 2021     The solid blue line tracks the number of organizations Proofpoint saw being targeted by attackers using Cobalt Strike. (Source: Proofpoint) The legitimate security penetration testing tool…

Геймеров чаще всего атакуют вредоносы под именами Minecraft и CS:GO

Геймеров чаще всего атакуют вредоносы под именами Minecraft и CS:GO

Специалисты «Лаборатории Касперского» углубились в анализ киберугроз, связанных с индустрией видеоигр, и выяснили, с какими формами кибератак чаще всего сталкиваются геймеры. Оказалось, что большинство подобных вредоносных ссылок содержат имена таких популярных проектов, как Minecraft и Counter-Strike: Global Offensive (CS:GO).

Attackers Increasingly Using Cobalt Strike

Attackers Increasingly Using Cobalt Strike

Cybercrime , Fraud Management & Cybercrime , Fraud Risk Management Report: Pen Testing Tool a Favorite Among Lower-Level Threat Groups Doug Olenick (DougOlenick) • June 30, 2021     The solid blue line tracks the number of organizations Proofpoint saw being targeted by attackers using Cobalt Strike. (Source: Proofpoint) The legitimate security penetration testing tool…

CVE-2021-22354 – Alert Detail – Security Database

CVE-2021-22354 – Alert Detail – Security Database

Executive Summary Informations Name CVE-2021-22354 First vendor Publication 2021-06-30 Vendor Cve Last vendor Modification 2021-06-30 Security-Database Scoring CVSS v3 Cvss vector : N/A Overall CVSS Score NA Base Score NA Environmental Score NA impact SubScore NA Temporal Score NA Exploitabality Sub Score NA   Calculate full CVSS 3.0 Vectors scores Security-Database Scoring CVSS v2 Cvss…

Denmark’s Central Bank Compromised by SolarWinds Cyber Attack: Media Report

Denmark’s Central Bank Compromised by SolarWinds Cyber Attack: Media Report

COPENHAGEN – Denmark’s central bank was compromised in last year’s global SolarWinds hacking operation, leaving a “backdoor” to its network open for seven months, IT media Version2 reported on Tuesday, citing documents related to the case. The hackers, accused by the United States of working for Russian intelligence, were unusually sophisticated and modified code in…

Zyxel Warns of Attacks on Its Firewall, VPN Products

Zyxel Warns of Attacks on Its Firewall, VPN Products

Endpoint Security , Governance & Risk Management , IT Risk Management Company Advises Users to Maintain Proper Security Policies as It Prepares Hotfix Prajeet Nair (@prajeetspeaks) • June 30, 2021     (Photo: Zyxel) Zyxel, a Taiwanese networking device manufacturer, is notifying customers about an ongoing series of attacks on some of its enterprise firewall…

Data-Wiping Attacks Hit Outdated Western Digital Devices

Data-Wiping Attacks Hit Outdated Western Digital Devices

Breach Notification , Cybercrime , Endpoint Security Manufacturer Stopped Supporting Targeted Network-Attached Storage Devices in 2015 Mathew J. Schwartz (euroinfosec) • June 28, 2021     Screen grab posted by the owner of a LAN-connected Western Digital My Book Live after it was apparently hit by a data-wiping attack that also changed the device’s admin…