Skip to main content

Topic

Emerging Issue

Asset Visibility is Key in Addressing CISA’s BOD 23-01

Learn how agencies can address the U.S. Cybersecurity & Infrastructure Security Agency's new Binding Operational Directive (BOD 23-01).

Why the Bridges Between Blockchains Are Under Assault

Connections between blockchains are the weak links in the security armor of the “unhackable” technology underpinning the next generation of the internet.

Hackers Use PowerPoint Files for “Mouseover” Malware: Cyber Threat Intelligence Roundup

Hackers use PowerPoint files for mouse-hover malware delivery, Russia plans “massive cyberattacks” on critical infrastructure, and researchers uncover a covert attack campaign targeting military contractors.

To Defend Against Vishing, Get Smart

Voice-phishing attackers use urgent calls to trick users into divulging sensitive data and breaking into your network. Here’s how CISOs can be prepared for this popular form of cybercrime.

The Rise of Phishing-as-a-Service: Cyber Threat Intelligence Roundup

The minimal impact of offensive hacks in the Russia - Ukraine conflict, a new EvilProxy phishing toolkit and Monti ransomware emerges.

Kimsuky’s New Malware Attack Strategy: Cyber Threat Intelligence Roundup

Kimsuky’s new strategy for evading security researchers, Chinese hackers use ScanBox malware to target the Australian government, and new ransomware called Agenda that’s customized for each victim.

Nobelium's New ‘MagicWeb’ Malware: Cyber Threat Intelligence Roundup

The latest on APT29’s new post-exploitation strategy, an ongoing campaign against U.S. and NATO-affiliated organizations, and how hackers are using the Sliver toolkit as a Cobalt Strike alternative.

The State of Ransomware in 2022: Cyber Threat Intelligence Roundup

Investigating ransomware data from the first half of 2022, the latest on information-stealing malware deployed by Russia’s Shuckworm APT, and a look at UNC3890 activity observed actively targeting Israeli organizations.

BazarCall, Yanluowang, BumbleBee: Cyber Threat Intelligence Roundup

An advisory about BazarCall, the latest on the Yanluowang ransomware attack against Cisco, and more in our cyber threat intelligence roundup.

Malicious Macros, Dark Utilities, LockBit: Tanium Cyber Threat Intelligence Roundup

Ransomware gangs are exploiting macros, threat actors are leveraging the Dark Utilities platform, and more in the cyber threat intelligence roundup.

New Report Reveals Commodity Malware Surpasses Ransomware: Cyber Threat Intelligence Roundup

Top incident response trends from Q2, a new 'CosmicStrand' UEFI rootkit, and Censys discovers evidence of Russia-based ransomware network in the U.S.

Russian APT29 Hackers Use Google Drive and Dropbox to Evade Detection: Cyber Threat Intelligence Roundup

Russian APT29 hackers are using Google Drive and Dropbox to evade detection, new CloudMensis spyware is targeting Apple macOS users, and more in our cyber threat intelligence roundup.