I spotted another interesting file that uses, once again, steganography. It seems to be a trend (see one of my previous diaries[ 1]). The file is an malicious Excel sheet called blcopy.xls. Office documents are rare these days...
CISA Reveals 'Pattern' of Ransomware Attacks Against SimpleHelp RMM
A new Cybersecurity and Infrastructure Security Agency (CISA) advisory warned ransomware actors have been actively exploiting a critical SimpleHelp flaw since January.
Threat Actor Abuses TeamFiltration for Entra ID Account Takeovers
Proofpoint researchers discovered a large-scale campaign using the open source penetration-testing framework that has targeted more than 80,000 Microsoft accounts.
ConnectWise code signing certificates to be rotated
The Hacker News reports that ongoing security issues have prompted ConnectWise to schedule a rotation of digital code signing certificates for ScreenConnect, ConnectWise Remote Monitoring and Management, and ConnectWise Automate executables.