Moscow-adjacent GoldenJackal gang strikes air-gapped systems with custom malware

October 9, 2024 at 07:37PM The cyberespionage group GoldenJackal hacked air-gapped government and diplomatic PCs using custom malware twice, targeting a European government from May 2022 to March 2024 and a South Asian embassy in 2019. This Russian-speaking group has developed sophisticated tools over several years, employing various infection methods for data theft. ### Meeting … Read more

When Startup Founders Should Start Thinking About Cybersecurity

September 13, 2024 at 08:03AM David Rose of Rose Tech Ventures discussed two startups, one hit by scammers and another surviving due to better security. Startups often overlook cybersecurity, but Volt Typhoon’s attack on Versa Networks and other startups shows the critical need for improved security. Investors are increasingly pushing for cybersecurity plans, especially in … Read more

Russian APT Turla Wields Novel Backdoor Malware Against Polish NGOs

February 15, 2024 at 10:52AM The Russia-sponsored APT group Turla launched a cyberespionage campaign targeting Polish NGOs, using a new backdoor named “TinyTurla-NG” with modular capabilities. The backdoor allows execution of PowerShell and Windows Command Line Interface commands, and a new implant, TurlaPower-NG, for exfiltrating files. Turla also employs old tactics like compromised WordPress-based websites … Read more

Microsoft Catches APTs Using ChatGPT for Vuln Research, Malware Scripting

February 14, 2024 at 02:51PM Foreign government-backed hacking teams are leveraging OpenAI’s ChatGPT for malicious activities, including vulnerability research, target reconnaissance, and malware creation. Microsoft and OpenAI collaborated to study the use of large language models (LLMs) by these actors and found multiple known APTs experimenting with ChatGPT for malicious purposes. Microsoft took measures to … Read more