Cicada3301 Ransomware Attacks Windows and Linux/ESXi Hosts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware group, Cicada3301, has emerged, targeting Windows and Linux/ESXi hosts with sophisticated encryption techniques. First observed in June 2024, the group has quickly gained popularity by listing multiple victims on their data leak site. Rust was used to …

#FreeDurov – Hacktivists Rally On Telegram For CEO Pavel’s Release

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The events surrounding Pavel Durov’s arrest on 24 August 2024 due to Telegram’s suspected operational crimes worsened discussions on topics such as digital privacy, end-to-end encryption, and the responsibility of online platforms. This case also demonstrates the clash between the …

Understanding Malware Obfuscation: A Guide for Cybersecurity Professionals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the ever-evolving landscape of cybersecurity, malware obfuscation techniques are advancing rapidly. As security measures improve, so do malicious actors’ methods to bypass them. This guide explores cutting-edge obfuscation tactics, explaining how they work and offering detection and mitigation strategies. …

Beware of Malicious Chrome Extension Draning Crypto Wallets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers discovered that a malicious Chrome extension dubbed “Bull Checker” had been targeting people on multiple Solana-related subreddits. The Jupiter exchange issued a warning, following complaints from multiple Solana decentralized finance customers of their cryptocurrency wallets being drained. With this …

Hackers Delivers Lumma Stealer Via Public GitHub Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors often target the popular code repository platform “GitHub” due to it’s wide use, and features that this platform offers. Cybersecurity analysts at Gen DIgital recently discovered that threat actors are exploiting GitHub to propagate an information stealer, ‘Lumma.’  …

Iranian Hackers Attacking US Organizations To Deploy Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

As of August 2024, Iran-based cyber actors continue to exploit U.S. and foreign organizations across multiple sectors. The primary sectors targeted are education, finance, healthcare, defense, and local government entities. Not only that even some of the countries include Israel, …

Exploiting Jenkins RCE Vulnerability (CVE-2024-43044) Via Agents – Technical Analysis

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been identified in Jenkins, a widely used automation server. If exploited further, this vulnerability allows attackers to read arbitrary files from the Jenkins controller. If exploited further, it could potentially escalate to remote code execution (RCE). …

Iran State-Sponsored Hackers Intelligence Operations Using Fake Job Offers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mandiant has discovered one of the unusual Iranian counterintelligence activities that focuses on prospective agents of foreign intelligence services, especially in Israel. The operation was run by Iranian state-sponsored hackers between 2017 and March 2024 and comprised over 35 Farsi-language …

What is an Access Control Lists (ACLs)?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Access Control Lists (ACLs) are fundamental to network security and management. They are critical in determining who or what can access specific resources within a network. This article delves into the intricacies of ACLs, exploring their types, components, applications, and …

How Threat Actors Establish Persistence on Linux Systems – Elastic Security Labs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a detailed continuation of the Linux Detection Engineering series, Elastic Security’s Ruben Groenewoud has released an in-depth exploration of advanced persistence mechanisms used by threat actors on Linux systems. The technical article published by Elastic Search Labs delves into …