Cyber Defense Advisors

Year: 2023

  • by
  • October 24, 2023

Hamas’ online infrastructure reveals ties to Iran APT, researchers say

An application disseminated by Hamas via the private messaging app Telegram clued security investigators in to a crossover between the militant Palestinian group and cyber infrastructure linked to Iran, as well as links to a known hacker group. According to a report from cybersecurity company Recorded Future’s Insikt Group, the research team first identified the […]

Cyber News, Cyber Threat Trends
  • by
  • October 24, 2023

Okta support system breach highlights need for strong MFA policies

Attackers managed to breach identity and access management company Okta’s support system using stolen credentials and extracted valid customer session tokens from uploaded support files, according to a report by the firm. The strong multifactor authentication (MFA) policies enforced by one of the company’s impacted customers allowed it to detect the unauthorized access, block it, […]

Cyber News, Cyber Threat Trends

NJ Man Hired Online to Firebomb, Shoot at Homes Gets 13 Years in Prison

A 22-year-old New Jersey man has been sentenced to more than 13 years in prison for participating in a firebombing and a shooting at homes in Pennsylvania last year. Patrick McGovern-Allen was the subject of a Sept. 4, 2022 story here about the emergence of “violence-as-a-service” offerings, where random people from the Internet hire themselves […]

Cyber News

Get a Lifetime Subscription of FastestVPN for just $30

In the market for a new VPN? The top-rated FastestVPN has been reduced to just $29.97 for a lifetime subscription if you get it by October 23rd.

Cyber News, Cyber Threat Trends

Five Eyes Coalition Release Guidelines for Business Leaders on Securing Intellectual Property

The Five Eyes coalition’s principles focus on reducing the possibility of IP theft, particularly from nation-state-sponsored threat actors.

Cyber News, Cyber Threat Trends
  • by
  • October 23, 2023

From Snooze to Enthuse: Making Security Awareness Training ‘Sticky’

Most companies offer some kind of awareness training these days. But how much of those lessons are employees actually retaining?

Cyber News, Cyber Threat Trends
  • by
  • October 23, 2023

More Okta Customers Hacked

Attackers compromised customer support files containing cookies and session tokens, which could result in malicious impersonation of valid Okta users.

Cyber News, Cyber Threat Trends
  • by
  • October 23, 2023

9 Innovative Ways to Boost Security Hygiene for Cyber Awareness Month

If we really want to move the dial on security habits, it’s time to think beyond phishing tests. Our panel of CISOs and other security heavy-hitters offer expert tips that go beyond the obvious.

Cyber News, Cyber Threat Trends
  • by
  • October 23, 2023

Cisco Zero-Day Exploited to Implant Malicious Lua Backdoor on Thousands of Devices

Cisco has warned of a new zero-day flaw in IOS XE that has been actively exploited by an unknown threat actor to deploy a malicious Lua-based implant on susceptible devices. Tracked as CVE-2023-20273 (CVSS score: 7.2), the issue relates to a privilege escalation flaw in the web UI feature and is said to have been used alongside CVE-2023-20198 (CVSS […]

Cyber News, Cyber Threat Trends