Cyber Defense Advisors

Year: 2022

  • by
  • October 28, 2022

Raspberry Robin Operators Selling Cybercriminals Access to Thousands of Endpoints

The Raspberry Robin worm is becoming an access-as-a-service malware for deploying other payloads, including IcedID, Bumblebee, TrueBot (aka Silence), and Clop ransomware. It is “part of a complex and interconnected malware ecosystem, with links to other malware families and alternate infection methods beyond its original USB drive spread,” the Microsoft Security Threat Intelligence Center (MSTIC

Cyber News, Cyber Threat Trends
  • by
  • October 28, 2022

Google Issues Urgent Chrome Update to Patch Actively Exploited Zero-Day Vulnerability

Google on Thursday rolled out emergency fixes to contain an actively exploited zero-day flaw in its Chrome web browser. The vulnerability, tracked as CVE-2022-3723, has been described as a type confusion flaw in the V8 JavaScript engine. Security researchers Jan Vojtěšek, Milánek, and Przemek Gmerek of Avast have been credited with reporting the flaw on October […]

Cyber News, Cyber Threat Trends
  • by
  • October 28, 2022

Implementing Defense in Depth to Prevent and Mitigate Cyber Attacks

The increased use of information technology in our everyday life and business has led to cyber-attacks becoming more sophisticated and large-scale. For organizations to thrive in this era of technology, they must develop robust security strategies to detect and mitigate attacks. Defense in depth is a strategy in which companies use multiple layers of security […]

Cyber News, Cyber Threat Trends
  • by
  • October 28, 2022

Researchers Uncover Stealthy Techniques Used by Cranefly Espionage Hackers

A recently discovered hacking group known for targeting employees dealing with corporate transactions has been linked to a new backdoor called Danfuan. This hitherto undocumented malware is delivered via another dropper called Geppei, researchers from Symantec, by Broadcom Software, said in a report shared with The Hacker News. The dropper “is being used to install a new […]

Cyber News, Cyber Threat Trends

Twilio Reveals Further Security Breach

June vishing attack led to compromise of customer data

Cyber News, Cyber Threat Trends
  • by
  • October 28, 2022

User-Specific Secrets: Console Access

ACM.93 Testing that the user we granted AWS Console access can see their user-specific secret in Secrets Manager This is a continuation of my series on Automating Cybersecurity Metrics. Alright, we now have a user that can log into the AWS console. I wanted to the secret in Secrets Manager. Login and make sure you are […]

Cyber News, Cyber Threat Trends
  • by
  • October 28, 2022

Manufacturing Cybersecurity: Trends & Survey Response

Based on our survey of over 900 ICS security leaders in the United States, Germany, and Japan, we dig deeper into each industry’s challenges and present Trend Micro’s recommendations.

Cyber News, Cyber Threat Trends