Cyber Defense Advisors

Year: 2023

Chinese APT41 Linked to WyrmSpy and DragonEgg Surveillanceware

Lookout attributed WyrmSpy and DragonEgg to APT41 due to overlapping Android signing certificates

Cyber News, Cyber Threat Trends

How Cyber Threat Intelligence Practitioners Should Leverage Automation and AI

The Cyber Threat Intelligence Summit discussed how automation and generative AI could help CTI practitioners tackle the overload of data they have to process

Cyber News, Cyber Threat Trends

Industry Experts Urge CISA to Update Secure by Design Guidance

A letter authored by industry experts says that CISA should include specific details on how to implement security-by-design through threat modeling

Cyber News, Cyber Threat Trends

Industry Experts Urge CISA to Update Secure by Design Guidance

A letter authored by industry experts says that CISA should include specific details on how to implement security-by-design through threat modeling

Cyber News, Cyber Threat Trends

Scam Job Offers Target Uni Students

Threat actors exploit high cost of living

Cyber News, Cyber Threat Trends
  • by
  • July 19, 2023

Bad.Build Flaw in Google Cloud Build Raises Concerns of Privilege Escalation

Cybersecurity researchers have uncovered a privilege escalation vulnerability in Google Cloud that could enable malicious actors tamper with application images and infect users, leading to supply chain attacks. The issue, dubbed Bad.Build, is rooted in the Google Cloud Build service, according to cloud security firm Orca, which discovered and reported the issue. “By abusing the flaw and […]

Cyber News, Cyber Threat Trends
  • by
  • July 19, 2023

Exploring the Dark Side: OSINT Tools and Techniques for Unmasking Dark Web Operations

On April 5, 2023, the FBI and Dutch National Police announced the takedown of Genesis Market, one of the largest dark web marketplaces. The operation, dubbed “Operation Cookie Monster,” resulted in the arrest of 119 people and the seizure of over $1M in cryptocurrency. You can read the FBI’s warrant here for details specific to this case. In […]

Cyber News, Cyber Threat Trends
  • by
  • July 19, 2023

Chinese APT41 Hackers Target Mobile Devices with New WyrmSpy and DragonEgg Spyware

The prolific China-linked nation-state actor known as APT41 has been linked to two previously undocumented strains of Android spyware called WyrmSpy and DragonEgg. “Known for its exploitation of web-facing applications and infiltration of traditional endpoint devices, an established threat actor like APT 41 including mobile in its arsenal of malware shows how mobile endpoints are […]

Cyber News, Cyber Threat Trends
  • by
  • July 19, 2023

CISA and NSA Issue New Guidance to Strengthen 5G Network Slicing Against Threats

U.S. cybersecurity and intelligence agencies have released a set of recommendations to address security concerns with 5G standalone network slicing and harden them against possible threats. “The threat landscape in 5G is dynamic; due to this, advanced monitoring, auditing, and other analytical capabilities are required to meet certain levels of network slicing service level requirements over

Cyber News, Cyber Threat Trends