Proofpoint to Acquire Data Security Posture Management Firm Normalyze

October 29, 2024 at 11:51AM Proofpoint, a leader in enterprise cybersecurity, is set to acquire Normalyze, a company specializing in data security posture management (DSPM). This acquisition aims to enhance Proofpoint’s security offerings. **Meeting Takeaways:** 1. **Acquisition Announcement**: Proofpoint, a significant player in the enterprise cybersecurity sector, is set to acquire Normalyze, a company specializing … Read more

Researchers Sound Alarm on Active Attacks Exploiting Critical Zimbra Postjournal Flaw

October 2, 2024 at 02:31AM A critical security flaw, CVE-2024-45519, has been actively exploited in Synacor’s Zimbra Collaboration. The flaw allows unauthenticated attackers to execute arbitrary commands. The issue was addressed in Zimbra versions 8.8.15 Patch 46, 9.0.0 Patch 41, 10.0.9, and 10.1.1. Users are strongly advised to apply the latest patches for protection. Key … Read more

Proofpoint phishing palaver plagues millions with ‘perfectly spoofed’ emails from IBM, Nike, Disney, others

July 30, 2024 at 02:35AM A large-scale phishing campaign exploited a security vulnerability in Proofpoint’s email filtering to send three million fake emails daily, appearing to be from major companies. The spammers manipulated Proofpoint’s system to send malicious emails, tricking recipients into revealing sensitive information. Guardio Security notified Proofpoint and assisted in mitigating the attack, … Read more

Phishing Campaign Exploited Proofpoint Email Protections for Spoofing

July 29, 2024 at 02:48PM Guardio Labs reported that threat actors exploited a misconfiguration in Proofpoint’s email protection service to conduct a large-scale phishing campaign. The vulnerability, named EchoSpoofing, allowed attackers to send millions of phishing emails per day and bypass security measures, spoofing well-known brands. Proofpoint has been working to address the issue and … Read more

Proofpoint settings exploited to send millions of phishing emails daily

July 29, 2024 at 09:57AM The ‘EchoSpoofing’ phishing campaign exploited Proofpoint’s email protection service, sending millions of spoofed emails impersonating major companies. The emails aimed to steal personal info and incurred charges, while passing SPF and DKIM checks. Guardio Labs discovered and helped fix the security gap, leading to Proofpoint tightening security and introducing new … Read more

Proofpoint Email Routing Flaw Exploited to Send Millions of Spoofed Phishing Emails

July 29, 2024 at 09:24AM An unknown threat actor exploited an email routing misconfiguration in Proofpoint’s defenses to send millions of spoofed emails. The campaign, named EchoSpoofing, began in January 2024 and utilized SMTP servers on virtual private servers, bypassing major security protections. The attacker sent messages impersonating legitimate domains, and the technique eluded detection. … Read more

Spam blocklist SORBS closed by its owner, Proofpoint

June 7, 2024 at 02:36AM SORBS, a popular source for identifying spam servers, has been shut down by Proofpoint, its owner. The DNS-based Block List contained over 12 million known spam and phishing servers and was used by over 200,000 organizations. The service, in existence for 20 years, may be acquired, but high operational costs … Read more

Watch Out for ‘Latrodectus’ – This Malware Could Be In Your Inbox

April 8, 2024 at 07:33AM Threat hunters discovered a new malware, Latrodectus, distributed through email phishing campaigns since late November 2023. It is associated with IcedID threat actors and has been primarily linked to two initial access brokers. The malware has sophisticated capabilities and is expected to be increasingly used by financially motivated threat actors. … Read more

Hackers impersonate U.S. government agencies in BEC attacks

March 6, 2024 at 03:41PM TA4903, a gang of hackers specializing in business email compromise attacks, has been impersonating U.S. government entities to carry out malicious activities through fake bidding processes. Proofpoint has been tracking their campaign, noting intensified activities since mid-2023 and a shift to impersonating small businesses. They pose a significant threat and … Read more

Bumblebee malware attacks are back after 4-month break

February 13, 2024 at 10:47AM The Bumblebee malware, previously attributed to cybercrime syndicates Conti and Trickbot, has resurfaced in phishing campaigns targeting organizations in the U.S. The recent campaign uses fake voicemail notifications and malicious documents with VBA macros to introduce the Bumblebee DLL into victims’ systems. This marks a departure from previous distribution methods … Read more