The nation-state threat group has been breaching providers of remote management tools, identity management providers, and other IT companies to access networks of targeted entities, according to Microsoft.
Автор: Jai Vijayan, Contributing Writer
China’s Silk Typhoon APT Shifts to IT Supply Chain Attacks
The nation-state threat group has been breaching providers of remote management tools, identity management providers, and other IT companies to access networks of targeted entities, according to Microsoft.
3 VMware Zero-Day Bugs Allow Sandbox Escape
The now-patched bugs are under active exploit and enable attackers to carry out a wide range of malicious activities, including escaping a virtual machine and gaining access to the underlying host.
Pentagon, CISA Deny Change in US Cyber Policy on Russia
Media reports over the weekend suggested the Trump Administration ordered US Cyber Command and CISA to draw down cyber activities targeting Russia.
Pentagon, CISA Deny Change in US Cyber Policy on Russia
Media reports over the weekend suggested the Trump Administration ordered US Cyber Command and CISA to draw down cyber activities targeting Russia.
Nakivo Fixes Critical Flaw in Backup & Replication Tool
The vendor’s products fall in a category that ransomware operators like to target to circumvent victims’ ability to recover from a successful attack.
Max Severity RCE Vuln in All Versions of MITRE Caldera
In the wrong hands, the popular red-teaming tool can be made to access networks, escalate privileges, conduct reconnaissance, and disguise malicious activity as a simulated exercise.
Zero-Day Bug Pops Up in Parallels Desktop for Mac
A patch bypass for a bug in the popular desktop emulator enables root-level privilege escalation and has no fix in sight.
25 Years On, Active Directory Is Still a Prime Attack Target
Evolving threats and hybrid identity challenges keep Microsoft’s Active Directory at risk.
Russian Groups Target Signal Messenger in Spy Campaign
These sorts of attacks reveal growing adversary interest in secure messaging apps used by high-value targets for communication, Google says.