Cyber Defense Advisors

News

  • by
  • July 9, 2024

Cybersecurity Agencies Warn of China-linked APT40’s Rapid Exploit Adaptation

Cybersecurity agencies from Australia, Canada, Germany, Japan, New Zealand, South Korea, the U.K., and the U.S. have released a joint advisory about a China-linked cyber espionage group called APT40, warning about its ability to co-opt exploits for newly disclosed security flaws within hours or days of public release. “APT40 has previously targeted organizations in various […]

Cyber News
  • by
  • July 9, 2024

Trojanized jQuery Packages Found on npm, GitHub, and jsDelivr Code Repositories

Unknown threat actors have been found propagating trojanized versions of jQuery on npm, GitHub, and jsDelivr in what appears to be an instance of a “complex and persistent” supply chain attack. “This attack stands out due to the high variability across packages,” Phylum said in an analysis published last week. “The attacker has cleverly hidden […]

Cyber News

Cybersecurity Wake-Up Call: Lessons from the London Hospitals Ransomware Attack

Cybersecurity Wake-Up Call: Lessons from the London Hospitals Ransomware Attack How Outdated IT Systems and Basic Security Lapses Could Cost Your Organization Everything The recent ransomware attack on the NHS (National Health Service)—one of the worst in British history—is a dire warning: outdated IT systems and weak cybersecurity practices could spell irretrievable disaster for any organization. […]

Cyber Thoughts
  • by
  • July 8, 2024

On the CSRB’s Non-Investigation of the SolarWinds Attack

ProPublica has a long investigative article on how the Cyber Safety Review Board failed to investigate the SolarWinds attack, and specifically Microsoft’s culpability, even though they were directed by President Biden to do so. Tags: cyberattack, cyberespionage, DHS, Microsoft, national security policy, Russia Sidebar photo of Bruce Schneier by Joe MacInnis.  

Cyber News
  • by
  • July 8, 2024

New APT Group “CloudSorcerer” Targets Russian Government Entities

A previously undocumented advanced persistent threat (APT) group dubbed CloudSorcerer has been observed targeting Russian government entities by leveraging cloud services for command-and-control (C2) and data exfiltration. Cybersecurity firm Kaspersky, which discovered the activity in May 2024, said the tradecraft adopted by the threat actor bears similarities with that of CloudWizard, but pointed out the […]

Cyber News
  • by
  • July 8, 2024

Dark Web Malware Logs Expose 3,300 Users Linked to Child Abuse Sites

An analysis of information-stealing malware logs published on the dark web has led to the discovery of thousands of consumers of child sexual abuse material (CSAM), indicating how such information could be used to combat serious crimes. “Approximately 3,300 unique users were found with accounts on known CSAM sources,” Recorded Future said in a proof-of-concept […]

Cyber News
  • by
  • July 8, 2024

ChatGPT for Mac app flaw left users’ chat history exposed

Graham CLULEY July 08, 2024 Promo Protect all your devices, without slowing them down. Free 30-day trial Is it only a few weeks since OpenAI announced its new app for macOS computers? To much fanfare, the makers of ChatGPT revealed a desktop version that allowed Mac users to ask questions directly rather than via the […]

Cyber News
  • by
  • July 8, 2024

New Ransomware-as-a-Service ‘Eldorado’ Targets Windows and Linux Systems

An emerging ransomware-as-a-service (RaaS) operation called Eldorado comes with locker variants to encrypt files on Windows and Linux systems. Eldorado first appeared on March 16, 2024, when an advertisement for the affiliate program was posted on the ransomware forum RAMP, Singapore-headquartered Group-IB said. The cybersecurity firm, which infiltrated the ransomware group, noted that its representative […]

Cyber News
  • by
  • July 8, 2024

5 Key Questions CISOs Must Ask Themselves About Their Cybersecurity Strategy

Events like the recent massive CDK ransomware attack – which shuttered car dealerships across the U.S. in late June 2024 – barely raise public eyebrows anymore. Yet businesses, and the people that lead them, are justifiably jittery. Every CISO knows that cybersecurity is an increasingly hot topic for executives and board members alike. And when […]

Cyber News