Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: SSO

Threat Research

Iron Tiger’s SysUpdate Reappears, Adds Linux Targeting

February 23, 2023October 13, 2025 Securonix

Trend Micro’s report details Iron Tiger’s update to SysUpdate, adding Linux-targeting capabilities and new C2 features, including DNS-based communication. It also notes hardened loading techniques, signed binaries abuse, and a lure using a chat application, in…

Read More
Threat Research

OneNote: A Growing Threat for Malware Distribution

February 23, 2023October 15, 2025 Securonix

Microsoft OneNote is becoming a growing vector for malware delivery, as threat actors embed malicious payloads in OneNote documents distributed via phishing emails and other deceptive tactics. Across multiple case studies, attackers use obfuscation and scripti…

Read More
Threat Research

Blackfly: Espionage Group Targets Materials Technology

February 22, 2023October 13, 2025 Securonix

Blackfly (also known as APT41, Winnti Group, Bronze Atlas) continues targeting Asia, focusing on the materials and composites sector and hitting two subsidiaries of an Asian conglomerate to steal intellectual property. Researchers detail a late-2022 to early-2…

Read More
Threat Research

Team Cymru: From Chile with Malware – Tech Company Insights

February 22, 2023October 16, 2025 Securonix

Team Cymru tracks infrastructure linked to the IcedID threat, revealing a Chilean IP involved in accessing IcedID BackConnect/C2 activity and related DNS services. The findings show a network of domains, VPN usage, and tools frequently associated with IcedID o…

Read More
Threat Research

Magniber Ransomware’s Relaunch Technique – ASEC BLOG

February 21, 2023October 15, 2025 Securonix

Magniber has relaunched its campaign by delivering MSI installers through Edge and Chrome, after shifting away from the old IE vulnerability. It uses a loader that injects Magniber into user processes, persists via Run registry keys, and downloads a new instan…

Read More
Threat Research

WinorDLL64: A backdoor from the vast Lazarus arsenal?

February 20, 2023October 16, 2025 Securonix

ESET researchers analyzed Wslink and its WinorDLL64 payload, a backdoor that loads in-memory modules and communicates over an existing Wslink connection. The backdoor collects extensive system information, manipulates files, and executes commands, with Lazarus…

Read More
Threat Research

Technical Advisory: Various Threat Actors Targeting ManageEngine Exploit CVE-2022-47966

February 20, 2023October 17, 2025 Securonix

Bitdefender Labs observed a global wave of opportunistic attacks exploiting CVE-2022-47966 in ManageEngine products, with 2,000–4,000 internet-facing servers potentially vulnerable. The advisory documents four attack clusters (Initial Access Brokers, Buhti Ran…

Read More
Threat Research

HardBit 2.0 Ransomware

February 17, 2023October 16, 2025 Securonix

HardBit 2.0 is a ransomware variant observed from late 2022 that encrypts data after stealing sensitive information, negotiating ransom rather than paying a fixed bitcoin amount. It combines data theft, encryption, and multiple defense-evading and persistence …

Read More
Threat Research

HWP Malware Using the Steganography Technique: RedEyes (ScarCruft) – ASEC BLOG

February 17, 2023October 13, 2025 Securonix

ASEC reports that the RedEyes group (ScarCruft/APT37) targeted individuals in Korea by exploiting the CVE-2017-8291 HWP EPS vulnerability and delivering malware via steganography. They reveal a new backdoor, M2RAT (Map2RAT), that uses a shared memory channel a…

Read More
Threat Research

Your Office Document is at Risk – XLL, A New Attack Vector

February 16, 2023October 16, 2025 Securonix

Two office-document threat vectors are described: attackers are moving from VBA macros to malicious Microsoft Office Add-ins, specifically XLLs, to deliver payloads. The article details a Raccoon Stealer V2 campaign that uses obfuscated .NET installers loaded …

Read More
Threat Research

RedLine Stealer returns with New TTPS – Detection & Response – Security Investigation

February 16, 2023October 13, 2025 Securonix

Redline Stealer has re-emerged with new TTPS-detection findings, detailing its infection chain, data-theft capabilities, and persistence mechanisms. The article outlines how the malware spreads, what data it targets, and the indicators that security teams can …

Read More
Threat Research

Three Cases of Cyber Attacks on the Security Service of Ukraine and NATO Allies, Likely by Russian State-Sponsored Gamaredon

February 15, 2023October 14, 2025 Securonix

EclecticIQ analyzes three cases of cyberattacks likely linked to the Gamaredon APT group, targeting the Security Service of Ukraine, Culver Aviation, and Latvian/NATO allies with phishing, HTML smuggling, and CVE-2017-0199 Word exploits. The report notes overl…

Read More
Threat Research

Ransomware Attack Against U.S. Public Housing Authority Linked to Previous Attacks

February 9, 2023October 25, 2025 Securonix

SecurityScorecard’s STRIKE Team investigates a ransomware incident affecting a major U.S. city housing authority and concludes with moderate confidence that the event involved ransomware, despite past false claims by LockBit. The analysis ties activity to a kn…

Read More
Threat Research

Paradise Ransomware Distributed Through AweSun Vulnerability Exploitation – ASEC BLOG

February 9, 2023October 13, 2025 Securonix

Paradise ransomware is being distributed via exploitation of the AweSun vulnerability, with the same actors previously linked to Sunlogin-related BYOVD and Sliver C2 campaigns. The attackers use AweSun-generated cmd/PowerShell to install DP_Main.exe, encrypt f…

Read More
Threat Research

Investigating Intrusions From Intriguing Exploits

February 7, 2023October 16, 2025 Securonix

Huntress linked a February 2023 GoAnywhere MFT-related intrusion to a zero-day vulnerability and a Truebot-like post-exploitation activity, leading to a mitigation before a ransomware event could unfold. The effort highlighted how certutil and rundll32 were us…

Read More

Posts pagination

Previous 1 … 506 507 508 … 523 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.