Summary: Attackers are increasingly exploiting vulnerabilities before defenses are ready, utilizing trusted security tools for malicious activities. This week’s highlights include a critical Windows zero-day vulnerability and various malware exploitation incidents, emphasizing the urgency of proacti…
Tag: THREAT HUNTING
This analysis of the APT38 malware highlights the sophisticated methods used by the Lazarus Group, emphasizing the malware’s malicious capabilities and behaviors, such as process injection and command and control operations. The findings indicate the need for …
The article examines the sophisticated cyber espionage group known as BlackTech, believed to be state-sponsored by the People’s Republic of China. Since at least 2010, they have targeted critical sectors across East Asia and the US, employing advanced tactics,…
Courses to become a “Zero to Hero” in Cyber Security without marketing , you will have to: study a lot (we are talking about a “Hero” right?) study “non-technical” and “unconventional” things (Quality = Hard Skills + Soft Skills) study the same thing more than once (Learn = Repeat + Repe…
A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more General • Servers • Vulnerabilities • Exploits • Attack surface • Code • Email addresses&nb…
Summary: The Cybersecurity and Infrastructure Security Agency (CISA) plans to significantly reduce its workforce by cutting approximately 1,300 employees in response to heightened scrutiny from the White House. The agency’s budget cuts, which include slashing half of its full-time staff and addition…
The cryptocurrency community is under increasing attack from threat actors using malicious packages to compromise legitimate software. A recent campaign involved the pdf-to-office package, which was designed to inject malicious code into crypto wallets like At…
Phishing attacks targeting the Polish energy sector were identified, utilizing open-source tools for credential harvesting. Domains were set up to impersonate government and energy organizations, raising concerns about planned phishing campaigns. The configura…
Summary: French cybersecurity startup Qevlar AI has secured million in its latest funding round, bringing its total investment to million. The funds will be used to enhance product development and expand internationally. Qevlar’s platform utilizes AI to automate incident analysis, improving the effi…
Summary: This article explores the transformative power of Agentic AI in Security Operations Centers (SOCs), emphasizing its autonomy compared to traditional Assistant AI tools. It highlights how Agentic AI automates critical triage and investigation tasks, reducing analyst fatigue while improving o…
Vidar Stealer is a potent malware that has evolved over the years since its inception in 2018, targeting multiple platforms, especially the gaming sector. Recently, it was distributed through a game on Steam, exploiting the trust associated with popular softwa…
This article discusses how to identify a wide range of phishing domains tied to a Meta-themed credential phishing campaign. The author explains utilizing Validin’s features for WHOIS registration and host response analysis to uncover over 100 related phishing …
Summary: The video discusses a live training session for the Just Hacking community, highlighting new courses and features, including VPN support for accessing a new lab environment. The session introduces a special guest, Anton, who presents the “Constructing Defense” course, focusing on teaching c…
Summary: A series of cyberattacks have targeted some of Australia’s largest superannuation funds, compromising over 20,000 member accounts, with significant impacts reported by AustralianSuper and Australian Retirement Trust. In response, affected organizations have implemented immediate protective…
This article provides an in-depth exploration of EncryptHub, a rising cybercriminal, detailing his background, mistakes in operational security (OPSEC), and reliance on AI tools like ChatGPT in his malicious activities. The story reflects the duality of Encryp…