Friday, August 2, 2024

APT28 Targets Diplomats with HeadLace Malware via Car Sale Phishing Lure

A Russia-linked threat actor has been linked to a new campaign that employed a car for sale as a phishing lure to deliver a modular Windows backdoor called HeadLace.

"The campaign likely targeted diplomats and began as early as March 2024," Palo Alto Networks Unit 42 said in a report published today, attributing it with medium to high level of confidence to APT28, which is also referred to as


http://dlvr.it/TBQSfx

Cybercriminals Abusing Cloudflare Tunnels to Evade Detection and Spread Malware

Cybersecurity companies are warning about an uptick in the abuse of Clouflare's TryCloudflare free service for malware delivery.
The activity, documented by both eSentire and Proofpoint, entails the use of TryCloudflare to create a one-time tunnel that acts as a conduit to relay traffic from an attacker-controlled server to a local machine through Cloudflare's infrastructure.
Attack chains


http://dlvr.it/TBPlql

Thursday, August 1, 2024

Cyber experts offer safety tips following OneBlood ‘ransomware attack’ - WFTV Orlando

Cyber experts offer safety tips following OneBlood ‘ransomware attack’  WFTV Orlando


http://dlvr.it/TBNgzy

Cybersecurity - Johnson Controls

Cybersecurity  Johnson Controls


http://dlvr.it/TBNgqn

EPA ‘urgently’ needs to step up cybersecurity assistance for the water sector, GAO says - CyberScoop

EPA ‘urgently’ needs to step up cybersecurity assistance for the water sector, GAO says  CyberScoop


http://dlvr.it/TBNT9g

Over 1 Million Domains at Risk of 'Sitting Ducks' Domain Hijacking Technique

Over a million domains are susceptible to takeover by malicious actors by means of what has been called a Sitting Ducks attack.
The powerful attack vector, which exploits weaknesses in the domain name system (DNS), is being exploited by over a dozen Russian-nexus cybercriminal actors to stealthily hijack domains, a joint analysis published by Infoblox and Eclypsium has revealed.
"In a Sitting


http://dlvr.it/TBN0tf

Facebook Ads Lead to Fake Websites Stealing Credit Card Information

Facebook users are the target of a scam e-commerce network that uses hundreds of fake websites to steal personal and financial data using brand impersonation and malvertising tricks.
Recorded Future's Payment Fraud Intelligence team, which detected the campaign on April 17, 2024, has given it the name ERIAKOS owing to the use of the same content delivery network (CDN) oss.eriakos[.]com.
"These


http://dlvr.it/TBMHS8

Cybersecurity needs AI as much as AI needs cybersecurity - Techzine Europe

Cybersecurity needs AI as much as AI needs cybersecurity  Techzine Europe http://dlvr.it/TDY1dr