Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: INITIAL ACCESS

Threat Research

Kiss-a-Dog Discovered Utilizing a 20-Year-Old Process Hider

December 20, 2022October 17, 2025 Securonix

Kiss-a-Dog, a cryptojacking campaign, has evolved to broaden its reach from Docker/Kubernetes to Redis-based targets, introducing a 20-year-old open-source process hider and other payloads like Tsunami and XMRig. The variant uses Redis for initial access, down…

Read More
Threat Research

Stolen certificates in two waves of ransomware and wiper attacks

December 19, 2022October 14, 2025 Securonix

Two waves of ransomware and wiper attacks targeted Albanian government and law-enforcement systems, with later samples signed using stolen digital certificates from Nvidia and Kuwait Telecommunications Company. The campaigns show cross-language cooperation, po…

Read More
Threat Research

Detecting Windows AMSI Bypass Techniques

December 16, 2022October 15, 2025 Securonix

The article explains how Windows AMSI can be bypassed and how security teams can detect such abuse using Trend Micro Vision One and related products. It also outlines common bypass techniques, real-attack examples, and practical indicators for defenders. #AMSI…

Read More
Threat Research

Unmasking MirrorFace: Operation LiberalFace targeting Japanese political entities

December 10, 2022October 14, 2025 Securonix

ESET researchers exposed Operation LiberalFace, a MirrorFace spearphishing campaign aimed at Japanese political entities around the 2022 House of Councillors election. The operation leveraged the LODEINFO backdoor, introduced a new credential stealer MirrorSte…

Read More
Threat Research

Cloud Atlas targets entities in Russia and Belarus amid the ongoing war in Ukraine – Check Point Research

December 9, 2022October 13, 2025 Securonix

Cloud Atlas (Inception) is a long-running cyber-espionage group whose focus has narrowed to Russia, Belarus, and contested regions in Ukraine and Moldova since 2021–2022, including Crimea and Donetsk/Luhansk. In the past year they staged targeted intrusions us…

Read More
Threat Research

Royal Rumble: Analysis of Royal Ransomware

December 8, 2022October 16, 2025 Securonix

The Royal ransomware group emerged in early 2022 and has grown globally, deploying through multiple TTPs and affecting organizations worldwide. It uses a unique partial encryption approach with a flexible percentage, operates in a multi-threaded manner, and sh…

Read More
Threat Research

APT Cloud Atlas: Unbroken Threat

December 6, 2022October 16, 2025 Securonix

Cloud Atlas is a long-running threat group focused on government targets across Russia, Belarus, Azerbaijan, Turkey, and Slovenia, employing phishing with malicious templates to deliver multi-stage payloads. Their operations include remote Office templates, me…

Read More
Threat Research

Linux Cryptocurrency Mining Attacks Enhanced via CHAOS RAT

December 2, 2022October 16, 2025 Securonix

Trend Micro intercepted a Linux cryptomining campaign that now incorporates the CHAOS Remote Administrative Tool (CHAOSRAT) to enhance control over infected hosts. The operation persists via cron-based mechanisms, downloads XMRig and the RAT from distributed s…

Read More
Threat Research

New MuddyWater Threat: Old Kitten; New Tricks | Deep Instinct

December 2, 2022October 15, 2025 Securonix

MuddyWater (aka Static Kitten, Mercury) is an Iran MOIS-linked cyber espionage group that has expanded its targeting with campaigns using spearphishing and legitimate remote administration tools. The latest campaign uses HTML attachments and hosted archives to…

Read More
Threat Research

Cyble – Threat Actors Targeting Fans Amid FIFA World Cup Fever

December 2, 2022October 13, 2025 Securonix

Threat Actors are exploiting FIFA World Cup buzz to run a range of scams, including crypto phishing with fake NFT drops, fake FIFA-themed domains, WhatsApp-led scams, and broad malware campaigns. Cyble Research & Intelligence Labs (CRIL) documents multiple lur…

Read More
Threat Research

Breaking the silence – Recent Truebot activity

December 1, 2022October 15, 2025 Securonix

Since August 2022, Truebot (Silence.Downloader) infections have surged, with two botnets observed: a globally distributed one (notably targeting Mexico, Brazil, and Pakistan) and a newer US-focused botnet impacting Windows servers and several education-sector …

Read More
Threat Research

Compromised Cloud Compute Credentials: Case Studies From the Wild

December 1, 2022October 16, 2025 Securonix

Cloud compute credentials attacks target misconfigured cloud compute services to steal credentials and access cloud infrastructure, causing costly resource usage and remediation work. The article presents two real-world cases—one in AWS Lambda and one in Googl…

Read More
Threat Research

CISA Alert AA22-335A: Cuba Ransomware Analysis, Simulation, TTPs & IOCs

November 30, 2022October 15, 2025 Picussecurity

The Cuba Ransomware group Tropical Scorpius is analyzed in relation to its Cuba variant, including attack simulations added by Picus Threat Library. The report maps out a wide set of TTPs from initial access to impact, and notes connections to the Industrial S…

Read More
Threat Research

DeathStalker targets legal entities with new Janicab variant

November 30, 2022October 14, 2025 Securonix

Deathstalker has deployed a new Janicab variant targeting legal entities in the Middle East and Europe, leveraging YouTube-based dead-drop resolvers (DDRs) and a multi-stage VBScript loader to deliver Janicab. The operation shows expanded targets (including tr…

Read More
Threat Research

Fantasy – a new Agrius wiper deployed through a supply-chain attack

November 29, 2022October 14, 2025 Securonix

ESET researchers uncovered a new wiper called Fantasy and its execution tool Sandals, attributed to the Agrius APT, deployed through a supply-chain compromise against an Israeli software developer. The operation targeted Israeli HR/IT firms, diamond-industry s…

Read More

Posts pagination

Previous 1 … 211 212 213 … 224 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.