Corporate network compromised via Microsoft SharePoint RCE exploit
Initial access to the targeted SharePoint server through the flaw was leveraged to breach a Microsoft Exchange service account with elevated privileges, deploy the Huorong Antivirus, and install Impacket, resulting in the deactivation of legitimate...
Sophos firewalls compromised with Pygmy Goat backdoor
Other Linux-based network devices may have also been targeted by Pygmy Goat, as indicated by its utilization of a fake Fortinet certificate, a pair of remote shells, and several communication wake-up techniques.
FreeBSD servers subjected to novel Interlock ransomware attacks
Attacks by Interlock involved infiltration of targeted corporate networks and data exfiltration before proceeding with lateral movement, file encryption, and double-extortion activities.
Ne hagyjuk, hogy a kiberbűnözők lenyúlják a megtakarításainkat– SANS OUCH! – 2024. november
Megjelent a SANS és a Nemzetbiztonsági Szakszolgálat Nemzeti Kibervédelmi Intézet közös kiadványának 2024. novemberi száma, melyben azzal foglalkozunk, hogyan védhetjük meg a csalóktól online pénzügyi fiókjainkat.