Decipher editors Dennis Fisher and Lindsey O'Donnell-Welch are joined by Brian Donohue to dissect the Black Hat talks they're looking forward to.
The threat group likely used tools like Cobalt Strike as well as ShadowPad, a modular RAT that is a successor to the PlugX malware, in its attack.
In Chrome 127, Google has enabled a feature called app-bound encryption to protect cookies from malware.
Microsoft said that a global outage of its Azure service on Tuesday was exacerbated by “an error” in its response to a distributed denial-of-service (DDoS) attack.
UNC4393, a top Basta ransomware operator, has switched its initial access vector, showing the ongoing influences in the threat landscape a year after the Qakbot malware takedown.
The VMware ESXi flaw gives threat actors full administrative permissions on domain-joined hypervisors.
Huntress security researchers John Hammond joins Dennis Fisher to discuss the continued fallout from the CrowdStrike outage on cybersecurity teams.
The Department of Justice has indicted Rim Jong Hyok for allegedly conducting Maui ransomware attacks as part of the APT45 group.
Tyler Healy, CISO of Digital Ocean, joins Dennis Fisher to discuss the unique challenges of defending a huge platform, how AI is changing things for defenders, and what new challenges AI might bring in the near future.
Mandiant researchers have graduated a North Korean threat group to APT45 and the FBI is warning about the group's focus on stealing sensitive data from military and critical infrastructure operators.
The CrowdStrike Falcon update issue has become an attractive lure for cybercrime groups as affected organizations continue work to recover from the outage.
A known APT espionage group known as Daggerfly has updated its toolset in a number of recent attacks against organizations in Taiwan, as well as a U.S. non-governmental organization in China.
In a Friday statement, CISA said that it has observed threat actors taking advantage of the massive global outages, linked to a faulty CrowdStrike update, for phishing “and other malicious activity.”
An issue with an update for CrowdStrike's Falcon sensor software has caused Windows machines to fail and is linked to Microsoft Azure outages around the world.
APT41 compromised multiple organizations in the shipping and logistics, media, technology and automotive sectors.