Cybersecurity

Saudi Foreign Affairs Ministry Allegedly Hit by Major Data Breach, Exposing Over 1 Million Employee

The Ministry of Foreign Affairs for the Kingdom of Saudi Arabia has allegedly fallen victim to a massive data breach. The Saudi Foreign Affairs data breach purportedly exposed the personal information of more than 1.4 million employees affiliated with the ministry. In order to verify the claim of a data breach in Saudi Foreign Affairs, […]

Cybersecurity

Financial Fraud APK Campaign

This post is also available in: 日本語 (Japanese) Executive Summary During our research discovering threats in legitimate network traffic, activity generated by a certain type of Android Package Kit (APK) files kept hitting our radar. This activity led us to conduct an in-depth investigation on the associated APK files. Our research revealed a family of […]

Cybersecurity

Nation-State Actors Weaponize Ivanti VPN Zero-Days, Deploying 5 Malware Families

Jan 12, 2024NewsroomVulnerability / Threat Intelligence As many as five different malware families were deployed by suspected nation-state actors as part of post-exploitation activities leveraging two zero-day vulnerabilities in Ivanti Connect Secure (ICS) VPN appliances since early December 2023. “These families allow the threat actors to circumvent authentication and provide backdoor access to these devices,” […]

Cybersecurity

Urgent: GitLab Releases Patch for Critical Vulnerabilities – Update ASAP

Jan 12, 2024NewsroomDevSecOps / Software security GitLab has released security updates to address two critical vulnerabilities, including one that could be exploited to take over accounts without requiring any user interaction. Tracked as CVE-2023-7028, the flaw has been awarded the maximum severity of 10.0 on the CVSS scoring system and could facilitate account takeover by […]

Cybersecurity

CVE-2023-36025 Exploited for Defense Evasion in Phemedrone Stealer Campaign

Defense evasion by exploiting CVE-2023-36025 Once the malicious .url file exploiting CVE-2023-36025 is executed, it connects to an attacker-controlled server to download and execute a control panel item (.cpl) file. Microsoft Windows Defender SmartScreen should warn users with a security prompt before executing the .url file from an untrusted source. However, the attackers craft a […]

DJing

Ben Frost releases first album in six years – composer was “inspired by metal” | Juno Daily

Scope Neglect comes via the mighty Mute empire Iceland-based Australian composer Ben Frost has released his first studio album in six years. Scope Neglect, which is released via Mute, is described as an experimental and genre-shifting album forged from Frost’s admiration for heavy metal. The results meld elements of the genre with the composer’s dramatic, […]