Cyber Defense Advisors

Month: August 2023

  • by
  • August 1, 2023

CISA: ‘Submarine’ Backdoor Torpedoes Barracuda Email Security

A China-nexus cyber espionage campaign rages on with the fourth backdoor to surface in the wild that takes advantage of the CVE-2023-2868 zero-day security bug — with severe threat of lateral movement, CISA warns.

Cyber News, Cyber Threat Trends
  • by
  • August 1, 2023

Lessons Not Learned From Software Supply Chain Attacks

Businesses that develop business-, mission-, or safety-critical software must learn from previous victims of software supply chain attacks.

Cyber News, Cyber Threat Trends
  • by
  • August 1, 2023

‘DarkBERT’ GPT-Based Malware Trains Up on the Entire Dark Web

The DarkBART and DarkBERT cybercriminal chatbots, based on Google Bard, represent a major leap ahead for adversarial AI, including Google Lens integration for images and instant access to the whole of the cyber-underground knowledge base.

Cyber News, Cyber Threat Trends
  • by
  • August 1, 2023

Apple Users Open to Remote Control via Tricky macOS Malware

The Hidden Virtual Network Computing (hVNC) malware infests Macs and silently executes complete takeovers, with no user permission needed. It also sports persistence through reboots.

Cyber News, Cyber Threat Trends
  • by
  • August 1, 2023

Firefox fixes a flurry of flaws in the first of two releases this month

No zero-days, but some interesting patches with their very own “teachable moments”.

Cyber News, Cyber Threat Trends
  • by
  • August 1, 2023

Space Pirates Train Cyber Sabers on Russian, Serbian Organizations

The attackers have expanded beyond backdoors and recently started using Deed RAT to step up their attacks.

Cyber News, Cyber Threat Trends
  • by
  • August 1, 2023

In new ransomware model, cloud provider acts as front for bad actors: report

An apparently innocuous cloud hosting provider may be fronting for an Iran-based company that provides command-and-control services to ransomware attackers, according to a report published this week by security consultant and anti-ransomware vendor Halcyon. Cloudzy, the report said, is primarily a virtual private server provider, which accepts cryptocurrency as payment for its services. Halcyon said […]

Cyber News, Cyber Threat Trends
  • by
  • August 1, 2023

Canon Inkjet Printers at Risk for Third-Party Compromise via Wi-Fi

Nearly 200 models are affected by vulnerability that may give wireless access to unauthorized third parties.

Cyber News, Cyber Threat Trends

Novel Worm-Like Malware P2Pinfect Targets Redis Deployments

Cado Security said the malware acts as a botnet and is compatibille with both Windows and Linux

Cyber News, Cyber Threat Trends