Cyber Defense Advisors

Year: 2024

  • by
  • June 27, 2024

US charges four FIN9-linked hackers after $71 million cybercrime spree

Four alleged members of the FIN9 cybercrime gang have been charged in relation to a series of hacks that caused over US $71 million of losses for companies across the United States. The defendants, all Vietnamese nationals, are accused of launching a series of sophisticated phishing and supply-chain attacks to gain unauthorised access to company […]

Cyber News
  • by
  • June 27, 2024

Russian National Indicted for Cyber Attacks on Ukraine Before 2022 Invasion

A 22-year-old Russian national has been indicted in the U.S. for his alleged role in staging destructive cyber attacks against Ukraine and its allies in the days leading to Russia’s full-blown military invasion of Ukraine in early 2022. Amin Timovich Stigal, the defendant in question, is assessed to be affiliated with the Main Directorate of […]

Cyber News
  • by
  • June 27, 2024

Critical SQLi Vulnerability Found in Fortra FileCatalyst Workflow Application

A critical security flaw has been disclosed in Fortra FileCatalyst Workflow that, if left unpatched, could allow an attacker to tamper with the application database. Tracked as CVE-2024-5276, the vulnerability carries a CVSS score of 9.8. It impacts FileCatalyst Workflow versions 5.1.6 Build 135 and earlier. It has been addressed in version 5.1.6 build 139. […]

Cyber News

Financial Institutions Face Targeted Cyber Attacks

Financial Institutions Face Targeted Cyber Attacks Dramatic Cyber Intrusions Shake the Financial World Brace for impact, folks, the cyber storm intensifies! The financial world may be facing a major, unprecedented cyberattack, with the infamous ransomware group LockBit orchestrating a series of alarming and coordinated incidents. Initially threatening to release sensitive data from the U.S. Federal […]

Cyber Thoughts
  • by
  • June 26, 2024

Smashing Security podcast #378: Julian Assange, inside a DDoS attack, and deepfake traumas

Wikileaks’s Julian Assange is a free man, deepfakes cause trouble in the playground, and we hear hot takes about ransomware and tales from inside a devastating denial-of-service attack. All this and much much more is discussed in the latest edition of the “Smashing Security” podcast by cybersecurity veterans Graham Cluley and Carole Theriault, joined this […]

Cyber News
  • by
  • June 26, 2024

Introducing… The AI Fix podcast

Last time I launched a new podcast it was December 2016. As luck should have it, “Smashing Security” turned out to be quite a success – with something like 10 million downloads over the years and we just published our 378th episode. But a lot has changed since we launched “Smashing Security”. And that’s why […]

Cyber News
  • by
  • June 26, 2024

Exploit Attempts Recorded Against New MOVEit Transfer Vulnerability – Patch ASAP!

A newly disclosed critical security flaw impacting Progress Software MOVEit Transfer is already seeing exploitation attempts in the wild shortly after details of the bug were publicly disclosed. The vulnerability, tracked as CVE-2024-5806 (CVSS score: 9.1), concerns an authentication bypass that impacts the following versions – From 2023.0.0 before 2023.0.11 From 2023.1.0 before 2023.1.6, and […]

Cyber News
  • by
  • June 26, 2024

The US Is Banning Kaspersky

This move has been coming for a long time. The Biden administration on Thursday said it’s banning the company from selling its products to new US-based customers starting on July 20, with the company only allowed to provide software updates to existing customers through September 29. The ban—­the first such action under authorities given to […]

Cyber News
  • by
  • June 26, 2024

Chinese and N. Korean Hackers Target Global Infrastructure with Ransomware

Threat actors with suspected ties to China and North Korea have been linked to ransomware and data encryption attacks targeting government and critical infrastructure sectors across the world between 2021 and 2023. While one cluster of activity has been associated with the ChamelGang (aka CamoFei), the second cluster overlaps with activity previously attributed to Chinese […]

Cyber News