Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: INITIAL ACCESS

Threat Research

#StopRansomware: Vice Society | CISA

August 30, 2022October 15, 2025 Securonix

Joint FBI/CISA/MS-ISAC advisory details Vice Society’s ransomware operations, highlighting their methods, IOCs, and recommended mitigations for education-sector defenders. It notes that Vice Society uses variants such as Hello Kitty/Five Hands and Zeppelin and…

Read More
Threat Research

DangerousSavanna: Two-year long campaign targets financial institutions in French-speaking Africa – Check Point Research

August 29, 2022October 16, 2025 Securonix

DangerousSavanna is a two-year campaign targeting financial institutions in French-speaking Africa, employing spear-phishing and a diverse set of infection chains to deploy PoshC2 and AsyncRAT. The operation features evolving lures, modular payloads, and exten…

Read More
Threat Research

Play Ransomware Attack Playbook Similar to that of Hive, Nokoyawa

August 29, 2022October 14, 2025 Securonix

Play is a new ransomware family that mirrors Hive and Nokoyawa, suggesting shared operators and attack infrastructure. It differentiates itself with AdFind-based Active Directory discovery and a blend of LOLBins, GPO-based deployment, and double-extortion tech…

Read More
Threat Research

SafeBreach Uncovers New Remote Access Trojan (RAT)

August 26, 2022October 17, 2025 Securonix

SafeBreach Labs uncovered a new targeted remote access Trojan named CodeRAT that targets Farsi-speaking developers using a Word document with a DDE exploit. It features a versatile command set, uses Telegram bot API for C2 and public file-upload services for e…

Read More
Threat Research

BianLian Ransomware Gang Gives It a Go!

August 26, 2022October 13, 2025 Securonix

BianLian emerged as a relatively new ransomware actor deploying Go-based malware and using LOL (Living off the Land) techniques to move laterally while evading EDR during encryption. They exploited initial access vectors like ProxyShell and SonicWall VPNs, rap…

Read More
Threat Research

Raspberry Robin and Dridex: Two Birds of a Feather

August 26, 2022October 13, 2025 Securonix

IBM X-Force/MDR analysis connects Raspberry Robin infections with the Dridex malware and the Russia-based Evil Corp, revealing shared loader structures, anti-analysis techniques, and a workflow that leverages USB-based initial access. The report traces the inf…

Read More
Threat Research

Deep Dive into a Corporate Espionage Operation

August 25, 2022October 14, 2025 Securonix

Bitdefender’s deep-dive analyzes a corporate espionage operation targeting a small U.S. technology company, detailing how initial access was gained through an unpatched internet-facing vulnerability and how attackers staged months of data exfiltration. The ope…

Read More
Threat Research

Securonix Threat Labs Security Advisory: New Golang Attack Campaign GO#WEBBFUSCATOR Leverages Office Macros and James Webb Images to Infect Systems

August 23, 2022October 16, 2025 Securonix

Securonix Threat Labs uncovered a Golang-based GO#WEBBFUSCATOR campaign that leverages a James Webb image and obfuscated Go payloads to infect targets. The attack chain starts with a phishing Office attachment, downloads a malicious template, and uses DNS-base…

Read More
Threat Research

BlueSky Ransomware | AD Lateral Movement, Evasion and Fast Encryption Put Threat on the Radar

August 22, 2022October 14, 2025 Securonix

BlueSky ransomware is an emerging threat observed since mid-2022 that spreads through trojanized downloads and phishing emails, with rapid encryption and outbound lateral movement in Windows environments. It uses multi-stage PowerShell droppers, SMB-based prop…

Read More
Threat Research

Advanced BEC Scam Campaign Targeting Executives on O365

August 22, 2022October 17, 2025 Securonix

Mitiga uncovered an advanced business email compromise (BEC) campaign that targets executives via Office 365, combining high-end spear-phishing with adversary-in-the-middle (AiTM) techniques to bypass MFA and achieve persistence. Attackers monitor significant …

Read More
Threat Research

Defending in a hostile environment: Key findings from the BlackHat NOC

August 19, 2022October 15, 2025 Securonix

IronDefense documented a unique Black Hat NOC environment where real malware activity and classroom demos co-exist, revealing notable infections like SHARPEXT, Shlayer, and NetSupport RAT. The findings highlight the challenges of defending a highly segmented, …

Read More
Threat Research

Demystifying Qbot Malware

August 19, 2022October 16, 2025 Securonix

Qbot (QakBot) infections surged in 2022, with Trellix SecOps documenting its evolving delivery vectors and detection strategies to outpace defenses. The post details Qbot’s infection chain, MITRE technique mappings, IOCs, and Trellix detection/hunting guidance…

Read More
Threat Research

Ransomware Actor Abuses Genshin Impact Anti-Cheat Driver to Kill Antivirus

August 18, 2022October 15, 2025 Securonix

Researchers analyze mhyprot2.sys, a vulnerable Genshin Impact anti-cheat driver, showing how a ransomware actor weaponizes it to bypass privileges and terminate antivirus processes. The case highlights how legitimate drivers can be abused for privilege escalat…

Read More
Threat Research

A Tale of PivNoxy and Chinoxy Puppeteer | FortiGuard Labs 

August 12, 2022October 17, 2025 Securonix

Fortinet FortiGuard Labs analyzes a spearphishing campaign against a South Asian telecommunications agency, weaponizing an RTF document with Royal Road to exploit CVE-2018-0798 and drop a DLL chain leading to PoisonIvy (PivNoxy/Chinoxy) backdoors. The report o…

Read More
Threat Research

THREAT ANALYSIS REPORT: Bumblebee Loader – The High Road to Enterprise Domain Control

August 10, 2022October 15, 2025 Securonix

Cybereason GSOC analyzes a Bumblebee Loader infection, detailing the attack chain from initial lure to full network compromise and Active Directory takeover, with notes on post-exploitation actions, credential theft, and data exfiltration. The report also high…

Read More

Posts pagination

Previous 1 … 216 217 218 … 224 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.