Cyber Defense Advisors

News

Chinese Hackers Deploy MarsSnake Backdoor in Multi-Year Attack on Saudi Organization

Threat hunters have exposed the tactics of a China-aligned threat actor called UnsolicitedBooker that targeted an unnamed international organization in Saudi Arabia with a previously undocumented backdoor dubbed MarsSnake. ESET, which first discovered the hacking group’s intrusions targeting the entity in March 2023 and again a year later, said the activity leverages spear-phishing emails using […]

Cyber News

SEC Twitter hack: Man imprisoned for role in attack that caused Bitcoin’s price to soar.

Graham CLULEY May 20, 2025 Promo Protect all your devices, without slowing them down. Free 30-day trial A 25-year-old man from Alabama has been sentenced to 14 months in a federal prison for his part in a hack that resulted in the Bitcoin cryptocurrency to briefly soar in value. Eric Council Jr., of Athens, Alabama, […]

Cyber News

Go-Based Malware Deploys XMRig Miner on Linux Hosts via Redis Configuration Abuse

Cybersecurity researchers are calling attention to a new Linux cryptojacking campaign that’s targeting publicly accessible Redis servers. The malicious activity has been codenamed RedisRaider by Datadog Security Labs. “RedisRaider aggressively scans randomized portions of the IPv4 space and uses legitimate Redis configuration commands to execute malicious cron jobs on vulnerable systems,” security researchers Matt Muir […]

Cyber News

Malicious PyPI Packages Exploit Instagram and TikTok APIs to Validate User Accounts

Cybersecurity researchers have uncovered malicious packages uploaded to the Python Package Index (PyPI) repository that act as checker tools to validate stolen email addresses against TikTok and Instagram APIs. All three packages are no longer available on PyPI. The names of the Python packages are below – checker-SaGaF (2,605 downloads) steinlurks (1,049 downloads) sinnercore (3,300 […]

Cyber News

RVTools Official Site Hacked to Deliver Bumblebee Malware via Trojanized Installer

The official site for RVTools has been hacked to serve a compromised installer for the popular VMware environment reporting utility. “Robware.net and RVTools.com are currently offline. We are working expeditiously to restore service and appreciate your patience,” the company said in a statement posted on its website. “Robware.net and RVTools.com are the only authorized and […]

Cyber News

Ransomware Gangs Use Skitnet Malware for Stealthy Data Theft and Remote Access

Several ransomware actors are using a malware called Skitnet as part of their post-exploitation efforts to steal sensitive data and establish remote control over compromised hosts. “Skitnet has been sold on underground forums like RAMP since April 2024,” Swiss cybersecurity company PRODAFT told The Hacker News. “However, since early 2025, we have observed multiple ransomware […]

Cyber News

The NSA’s “Fifty Years of Mathematical Cryptanalysis (1937–1987)”

“Fifty Years of Mathematical Cryptanalysis (1937-1987),” by Glenn F. Stahly, was just declassified—with a lot of redactions—by the NSA. I have not read it yet. If you find anything interesting in the document, please tell us about it in the comments. Tags: cryptanalysis, mathematics, NSA, reports Sidebar photo of Bruce Schneier by Joe MacInnis.  

Cyber News

The AI Fix nominated for top podcast award. Vote now!

Bloomin’ eck! I’m delighted to share with you that “The AI Fix” is up for an award! “The AI Fix” is the podcast that Mark Stockley and I have been producing for the last year all about the hilarious, bizarre, and sometimes downright mind-boggling world of artificial intelligence. Sign up to our free newsletter.Security news, […]

Cyber News

Why CTEM is the Winning Bet for CISOs in 2025

Continuous Threat Exposure Management (CTEM) has moved from concept to cornerstone, solidifying its role as a strategic enabler for CISOs. No longer a theoretical framework, CTEM now anchors today’s cybersecurity programs by continuously aligning security efforts with real-world risk. At the heart of CTEM is the integration of Adversarial Exposure Validation (AEV), an advanced, offensive […]

Cyber News