Recent Security News

  • Iranian Hackers Use IOCONTROL Malware to Target OT, IoT Devices in US, Israel

    December 13, 2024 at 06:03AM A state-sponsored Iranian hacking group, CyberAv3ngers, has employed custom malware, IOCONTROL, to target IoT and operational technology devices in the U.S. and Israel. This malware exploits vulnerabilities in industrial control systems, leading to significant disruptions. The U.S. government offers a $10 million reward for information on the group. ### Meeting…

    Read More

  • New Linux Rootkit PUMAKIT Uses Advanced Stealth Techniques to Evade Detection

    December 13, 2024 at 04:45AM Researchers have identified a sophisticated Linux rootkit named PUMAKIT, capable of privilege escalation and evasion from detection. It uses multi-stage architecture, advanced stealth techniques, and hooks into system calls to conceal its presence while communicating with command-and-control servers. This highlights increasing malware complexity on Linux systems. **Meeting Takeaways from December…

    Read More

  • Taming the multi-vault beast

    December 13, 2024 at 04:11AM GitGuardian addresses the growing security concern of managing secrets across multiple vaults for Non-Human Identities (NHIs) in enterprises, which now outnumber human users 100 to one. Their new multi-vault integrations provide centralized visibility, automate detection, and streamline management, enhancing security and compliance while reducing operational costs. ### Meeting Takeaways: 1.…

    Read More

  • Vishing via Microsoft Teams Facilitates DarkGate Malware Intrusion

    December 13, 2024 at 03:04AM Trend Micro researchers examined a social engineering attack where an attacker impersonated a client during a Microsoft Teams call. The victim was tricked into downloading AnyDesk, allowing remote access, which facilitated the installation of DarkGate malware. The attack was ultimately stopped before any data exfiltration occurred, highlighting security vulnerabilities. **Meeting…

    Read More

  • FBI Busts Rydox Marketplace with 7,600 PII Sales, Cryptocurrency Worth $225K Seized

    December 13, 2024 at 02:15AM The U.S. Department of Justice shut down the Rydox marketplace, arresting its Kosovo administrators for selling stolen personal information and cybercrime tools. Rydox facilitated over 7,600 sales, generating $230,000. Additionally, Nigerian national Abiola Kayode was extradited for his role in a $6 million email fraud scheme. ### Meeting Takeaways 1.…

    Read More