07/17

Defending Against SCATTERED SPIDER and The Com with Cybercrime Intelligence

https://www.sans.org/blog/defending-against-scattered-spider-and-the-com-with-cybercrime-intelligence/
Defending Against SCATTERED SPIDER and The Com with Cybercrime Intelligence

Resurrecting Internet Explorer: Threat Actors Using Zero-day Tricks in Internet Shortcut File to Lure Victims (CVE-2024-38112) - Check Point Research

https://research.checkpoint.com/2024/resurrecting-internet-explorer-threat-actors-using-zero-day-tricks-in-internet-shortcut-file-to-lure-victims-cve-2024-38112/
Resurrecting Internet Explorer: Threat Actors Using Zero-day Tricks in Internet Shortcut File to Lure Victims (CVE-2024-38112) - Check Point Research

Cisco SSM On-Prem bug lets hackers change any user's password

https://www.bleepingcomputer.com/news/security/cisco-ssm-on-prem-bug-lets-hackers-change-any-users-password/
Cisco SSM On-Prem bug lets hackers change any user's password

China-linked APT17 Targets Italian Companies with 9002 RAT Malware

https://thehackernews.com/2024/07/china-linked-apt17-targets-italian.html
China-linked APT17 Targets Italian Companies with 9002 RAT Malware

FIN7 Reboot | Cybercrime Gang Enhances Ops with New EDR Bypasses and Automated Attacks - SentinelOne

https://www.sentinelone.com/labs/fin7-reboot-cybercrime-gang-enhances-ops-with-new-edr-bypasses-and-automated-attacks/
FIN7 Reboot | Cybercrime Gang Enhances Ops with New EDR Bypasses and Automated Attacks - SentinelOne

North Korean Hackers Update BeaverTail Malware to Target MacOS Users

https://thehackernews.com/2024/07/north-korean-hackers-update-beavertail.html
North Korean Hackers Update BeaverTail Malware to Target MacOS Users

Critical Apache HugeGraph Vulnerability Under Attack - Patch ASAP

https://thehackernews.com/2024/07/critical-apache-hugegraph-vulnerability.html
Critical Apache HugeGraph Vulnerability Under Attack - Patch ASAP

Craig Wright publicly admits he isn’t inventor of Bitcoin • The Register

https://go.theregister.com/feed/www.theregister.com/2024/07/17/craig_wright_isnt_bitcoins_satoshi_nakamoto/
Craig Wright publicly admits he isn’t inventor of Bitcoin • The Register

How to Bypass Golang SSL Verification

https://www.cyberark.com/resources/threat-research-blog/how-to-bypass-golang-ssl-verification
How to Bypass Golang SSL Verification

New BugSleep Backdoor Deployed in Recent MuddyWater Campaigns - Check Point Research

https://research.checkpoint.com/2024/new-bugsleep-backdoor-deployed-in-recent-muddywater-campaigns/
New BugSleep Backdoor Deployed in Recent MuddyWater Campaigns - Check Point Research

FIN7 Group Advertises Security-Bypassing Tool on Dark Web Forums

https://thehackernews.com/2024/07/fin7-group-advertises-security.html
FIN7 Group Advertises Security-Bypassing Tool on Dark Web Forums

Email addresses of 15 million Trello users leaked on hacking forum

https://www.bleepingcomputer.com/news/security/email-addresses-of-15-million-trello-users-leaked-on-hacking-forum/
Email addresses of 15 million Trello users leaked on hacking forum

Beware of BadPack: One Weird Trick Being Used Against Android Devices

https://unit42.paloaltonetworks.com/apk-badpack-malware-tampered-headers/
Beware of BadPack: One Weird Trick Being Used Against Android Devices

Over 400,000 Life360 user phone numbers leaked via unsecured API

https://www.bleepingcomputer.com/news/security/over-400-000-life360-user-phone-numbers-leaked-via-unsecured-android-api/
Over 400,000 Life360 user phone numbers leaked via unsecured API

Navigating Insider Risks: Are your Employees Enabling External Threats?

https://thehackernews.com/2024/07/navigating-insider-risks-are-your.html
Navigating Insider Risks: Are your Employees Enabling External Threats?

Scattered Spider Adopts RansomHub and Qilin Ransomware for Cyber Attacks

https://thehackernews.com/2024/07/scattered-spider-adopts-ransomhub-and.html
Scattered Spider Adopts RansomHub and Qilin Ransomware for Cyber Attacks

Oracle Patches 240 Vulnerabilities With July 2024 CPU - SecurityWeek

https://www.securityweek.com/oracle-patches-240-vulnerabilities-with-july-2024-cpu/
Oracle Patches 240 Vulnerabilities With July 2024 CPU - SecurityWeek

Rite Aid Says Hack Impacts 2.2M People as Ransomware Gang Threatens to Leak Data - SecurityWeek

https://www.securityweek.com/rite-aid-says-hack-impacts-2-2m-people-as-ransomware-gang-threatens-to-leak-data/
Rite Aid Says Hack Impacts 2.2M People as Ransomware Gang Threatens to Leak Data - SecurityWeek

Yacht giant MarineMax data breach impacts over 123,000 people

https://www.bleepingcomputer.com/news/security/yacht-giant-marinemax-data-breach-impacts-123-000-individuals/
Yacht giant MarineMax data breach impacts over 123,000 people