Cybersecurity

It Was Not Me! Malware-Initiated Vulnerability Scanning Is on the Rise

This post is also available in: 日本語 (Japanese) Executive Summary Our telemetry indicates a growing number of threat actors are turning to malware-initiated scanning attacks. This article reviews how attackers use infected hosts for malware-based scans of their targets instead of the more traditional approach using direct scans. Threat actors have been using scanning methods […]

Cybersecurity

Canada Sentences LockBit Hacker Mikhail Vasiliev to 4 Years

Fraud Management & Cybercrime , Ransomware Dual Canadian-Russian National Also Agrees to US Extradition Mihir Bagwe (MihirBagwe) • March 13, 2024     LockBit affiliate Mikhail Vasiliev received a four-year prison sentence in Canadian court Tuesday. LockBit ransomware affiliate Mikhail Vasiliev on Tuesday received a nearly four-year prison sentence in Canada and consented to extradition […]

Cybersecurity

The Art of Domain Deception: Bifrost’s New Tactic to Deceive Users

This post is also available in: 日本語 (Japanese) Executive Summary We recently found a new Linux variant of Bifrost (aka Bifrose), showcasing an innovative technique to evade detection. It uses a deceptive domain, download.vmfare[.]com, which mimics the legitimate VMware domain. This latest version of Bifrost aims to bypass security measures and compromise targeted systems. First […]