Cybersecurity

Zloader: No Longer Silent in the Night

Technical Analysis In the following sections, we dive into the technical details surrounding Zloader’s new updates to their anti-analysis techniques, embedded configuration, DGA, and network encryption. Anti-analysis techniques Zloader uses a combination of API import hashing, junk code, a filename check, and string obfuscation. The following sections analyze each technique. Imports and API resolution The […]

Cybersecurity

Cybercriminals leaked massive volumes of stolen PII data from Thailand in Dark Web

Cybercriminals leaked massive volumes of stolen PII data from Thailand in Dark Web Pierluigi Paganini January 22, 2024 Resecurity researchers warn of massive leak of stolen Thai personally identifiable information (PII) on the dark web by cybercriminals. Resecurity has detected a noticeable increase in data leaks from consumer-focused platforms in Thailand, confirming that threat actors […]

Cybersecurity

New Guidance Urges US Water Sector to Boost Cyber Resilience

Critical Infrastructure Security CISA, EPA and FBI Warn of Increased Cyberthreats Targeting US Water Systems Chris Riotta (@chrisriotta) • January 19, 2024     CISA, the EPA and the FBI urged water sector officials to bolster cyber defenses in guidance published on Thursday. (Image: Shutterstock) The water and wastewater sector is grappling with cybersecurity challenges […]

Cybersecurity

CISA’s 1,200 pre-ransomware alerts saved organizations millions in damages

Listen to the article 3 min This audio is auto-generated. Please let us know if you have feedback. Dive Brief: The Cybersecurity and Infrastructure Security Agency’s pre-ransomware notification initiative, which aims to reduce risk by alerting organizations of early-stage ransomware activity, resulted in more than 1,200 pre-ransomware notifications in 2023.  The federal agency’s effort had […]

Cybersecurity

NS-STEALER Uses Discord Bots to Exfiltrate Your Secrets from Popular Browsers

Jan 22, 2024NewsroomBrowser Security / Cyber Threat Cybersecurity researchers have discovered a new Java-based “sophisticated” information stealer that uses a Discord bot to exfiltrate sensitive data from compromised hosts. The malware, named NS-STEALER, is propagated via ZIP archives masquerading as cracked software, Trellix security researcher Gurumoorthi Ramanathan said in an analysis published last week. The […]