Sunday, January 14, 2024

Classic Baggie: A Delaware BEC Case calls him the leader of an International Criminal Organization

The U.S. Attorney’s office in Delaware charged Olugbenga Lawal with being a major money launderer for a Nigerian-based international criminal organization that specialized in Business Email Compromise (#BEC) and Romance Scam.  Lawal was charged with receiving more than $3 million…

Read more →


https://www.itsecuritynews.info/classic-baggie-a-delaware-bec-case-calls-him-the-leader-of-an-international-criminal-organization/?utm_source=dlvr.it&utm_medium=blogger

Who’s Behind GoatRAT?

In this brief analysis I’ll take a look at who’s behind GoatRAT in terms of social media activity C&C servers and actual personally identifiable information. Personally identifiable information: hxxp://bit[.]ly/nubankmodulo hxxp://goatrat[.]com/apks/apk20[.]apk Sample MD5s: 6583a9b6b83738e0bf2a261fc04483e18772da3241e467fdef37a8e27b1869a7 9a8e85cf1bbd32c71f0efa42ffedf1a0 hxxp://api[.]goatrat[.]com:3008 Social Media: hxxp://t[.]me/sickoDevz hxxp://t[.]me/goatmalware Web site: …

Read more →


https://www.itsecuritynews.info/whos-behind-goatrat/?utm_source=dlvr.it&utm_medium=blogger

Top 11 Best Enterprise Remote Access Software – 2024

Enterprise remote access software is an incredible innovation that eliminates the need for physical presence by allowing for the remote management and operation of computers and other electronic devices. Remote work, technical support, and effective system management are all made more accessible by this program in today’s increasingly interconnected world. Users can access remote resources, […]


The post Top 11 Best Enterprise Remote Access Software – 2024 appeared first on Cyber Security News.


https://cybersecuritynews.com/enterprise-remote-access-software/?utm_source=dlvr.it&utm_medium=blogger

Babuk Ransomware Decryptor Updated to Recover Files Infected by Latest Variant

Hackers use ransomware to encrypt victims’ files and render them inaccessible until a ransom is paid. This forces the victims to pay a ransom to regain access to compromised systems and data. This tactic leads to financial gains for the threat actors. While ransomware attacks can be conducted at scale and threat actors can target […]


The post Babuk Ransomware Decryptor Updated to Recover Files Infected by Latest Variant appeared first on Cyber Security News.


https://cybersecuritynews.com/babuk-ransomware-decryptor-updated/?utm_source=dlvr.it&utm_medium=blogger

New Findings Challenge Attribution in Denmark's Energy Sector Cyberattacks

The cyber attacks targeting the energy sector in Denmark last year may not have had the involvement of the Russia-linked Sandworm hacking group, new findings from Forescout show.
The intrusions, which targeted around 22 Danish energy organizations in May 2023, occurred in two distinct waves, one which exploited a security flaw in Zyxel firewall (CVE-2023-28771) and a


https://thehackernews.com/2024/01/new-findings-challenge-attribution-in.html?utm_source=dlvr.it&utm_medium=blogger

Saturday, January 13, 2024

Nation-State Actors Weaponize Ivanti VPN Zero-Days, Deploying 5 Malware Families

As many as five different malware families were deployed by suspected nation-state actors as part of post-exploitation activities leveraging two zero-day vulnerabilities in Ivanti Connect Secure (ICS) VPN appliances since early December 2023.
"These families allow the threat actors to circumvent authentication and provide backdoor access to these devices," Mandiant said in an


https://thehackernews.com/2024/01/nation-state-actors-weaponize-ivanti.html?utm_source=dlvr.it&utm_medium=blogger

Medusa Ransomware on the Rise: From Data Leaks to Multi-Extortion

The threat actors associated with the Medusa ransomware have ramped up their activities following the debut of a dedicated data leak site on the dark web in February 2023 to publish sensitive data of victims who are unwilling to agree to their demands.
“As part of their multi-extortion strategy, this group will provide victims with multiple options when their data is posted on their


https://thehackernews.com/2024/01/medusa-ransomware-on-rise-from-data.html?utm_source=dlvr.it&utm_medium=blogger

Applying the Tyson Principle to Cybersecurity: Why Attack Simulation is Key to Avoiding a KO

Picture a cybersecurity landscape where defenses are impenetrable, and threats are nothing more than mere disturbances deflected by a strong shield. Sadly, this image of fortitude remains a pipe dream despite its comforting nature. In the security world, preparedness is not just a luxury but a necessity. In this context, Mike Tyson's famous adage, "Everyone has a plan until they get punched in


https://thehackernews.com/2024/01/applying-tyson-principle-to.html?utm_source=dlvr.it&utm_medium=blogger

Urgent: GitLab Releases Patch for Critical Vulnerabilities - Update ASAP

GitLab has released security updates to address two critical vulnerabilities, including one that could be exploited to take over accounts without requiring any user interaction.
Tracked as CVE-2023-7028, the flaw has been awarded the maximum severity of 10.0 on the CVSS scoring system and could facilitate account takeover by sending password reset emails to an unverified email address.
The


https://thehackernews.com/2024/01/urgent-gitlab-releases-patch-for.html?utm_source=dlvr.it&utm_medium=blogger

What is the Difference Between ISO 27001 & 27002 Compliance? – A Detailed Guide

ISO 27001 and ISO 27002 are international standards that provide a framework for managing information security within an organization. In an increasingly interconnected world, where organizations rely heavily on technology and digital systems, safeguarding sensitive information and maintaining robust security measures is paramount. Perimeter81 Providers ISO 27001 and ISO 27002 compliance offer a systematic approach […]


The post What is the Difference Between ISO 27001 & 27002 Compliance? – A Detailed Guide appeared first on Cyber Security News.


https://cybersecuritynews.com/iso-27001-27002-compliance/?utm_source=dlvr.it&utm_medium=blogger