Practical Guide to Simplify Your Malware Sandboxes Configuration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Malware sandboxes are integral to security applications like intrusion detection, forensics, and threat intelligence, but using them correctly is challenging due to choices in implementations, monitoring techniques, and configurations.  Improper …

New Cyber Attack Targeting Hospital IT Helpdesks with Voice Calls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hospitals across the nation are on high alert as sophisticated cybercriminals use advanced social engineering tactics to target IT help desks. The Health Sector Cybersecurity Coordination Center (HC3) has issued …

Cisco Nexus Dashboard Vulnerability Let Attackers Read Arbitrary Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco Nexus Dashboard Fabric Controller is a network management platform for all NX-OS-enabled devices. It enables data center operation teams to perform deep-dive troubleshooting and maintenance operations.  A new vulnerability …

Meet The New Qakbot DLL That Abuses Windows Process For persistence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement dismantled the Qakbot botnet’s servers in 2023’s Operation Duck Hunt, but researchers identified its reemergence with a modified DLL, which utilizes the srtasks.exe process for persistence, ensuring its …

JsOutProx Malware Abusing GitLab To Attack Financial Institutions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab is a prominent web-based Git repository manager that is exploited by hackers to gain unauthorized access to confidential source code, steal intellectual property or insert malicious code into projects …

Hackers Hijacked Notepad++ Plugin To Inject Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers have manipulated a popular Notepad++ plugin, injecting malicious code that compromises users’ systems upon execution. The AhnLab Security Intelligence Center (ASEC) researchers have revealed that the “mimeTools.dll” plugin, which …

Multiple Chinese Hacking Groups Exploiting Ivanti Connect Secure VPN Flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity firm Mandiant has uncovered a series of sophisticated cyberattacks targeting Ivanti Connect Secure VPN appliances. These attacks, attributed to multiple Chinese nexus espionage groups, exploit critical vulnerabilities to facilitate …