In our increasingly interconnected global landscape, where businesses heavily depend on technology and digital systems, it is crucial to prioritize protecting sensitive data and maintaining robust security measures. ISO 27001 …
Commando Cat Attacking Docker Endpoints to Install Crypto Miners
A recent malware campaign dubbed “Commando Cat” has set its sights on exposed Docker API endpoints, posing a significant threat to cloud environments. This detailed analysis published by CADO delves …
URGENT: AnyDesk Servers Hacked, Customers Urged to Reset Passwords
It has been confirmed that AnyDesk, a renowned remote access software company headquartered in Germany, which boasts a staggering 170,000 customers worldwide, including big names such as Comcast and Thales, …
US Disrupts Chinese Botnet that Hijacks SOHO Routers
In a decisive action, the U.S. The Department of Justice (DOJ) has disrupted a cyber operation by Chinese state-sponsored hackers. This operation, codenamed Volt Typhoon, targeted American critical infrastructure using …
Cloudflare’s Server Hacked Using Leaked Access Token in Okta Breach
Cloudflare discovered a threat actor on the self-hosted Atlassian server on November 23, 2023. The attack was launched with the use of one stolen access token and three compromised service …
USB Malware Chained with Text Strings on Legitimate Websites Attacks Users
Despite the evolution of several tools and tactics, threat actors still go with the traditional approach to attack victims for malicious purposes. One such threat actor is UNC4990, which uses …
VileRAT Attacking Windows Machines via Malicious Software
A new variant of VileRAT is being distributed through fake software pirate websites to infect Windows systems on a large scale. This Python-based VileRAT malware family is believed to be specific …
Arrests in $400M SIM-Swap Tied to Heist at FTX?
Three Americans were charged this week with stealing more than $400 million in a November 2022 SIM-swapping attack. The U.S. government did not name the victim organization, but there is …
Russian APT’s Employ HTTP-Shell to Attack Government Entities
Recently, Cluster25, a threat intelligence firm, uncovered a spear-phishing campaign dubbed “The Bear and the Shell,” specifically targeting entities critical of the Russian government and aligned with dissident movements. The …
Hackers Use Compromised Routers to Attack Government Organizations
Attackers continue to use compromised routers as malicious infrastructure to target government organizations in Europe and the Caucasus region. APT28 threat actors (also known as Sofacy, Fancy Bear, etc.) were behind this …



