Cyber Defense Advisors

News

A Security Vulnerability in the KmsdBot Botnet

Security researchers found a software bug in the KmsdBot cryptomining botnet: With no error-checking built in, sending KmsdBot a malformed command­—like its controllers did one day while Akamai was watching­—created a panic crash with an “index out of range” error. Because there’s no persistence, the bot stays down, and malicious agents would need to reinfect […]

Cyber News, Cyber Threat Trends

A Security Vulnerability in the KmsdBot Botnet

Security researchers found a software bug in the KmsdBot cryptomining botnet: With no error-checking built in, sending KmsdBot a malformed command­—like its controllers did one day while Akamai was watching­—created a panic crash with an “index out of range” error. Because there’s no persistence, the bot stays down, and malicious agents would need to reinfect […]

Cyber News, Cyber Threat Trends

Dark Data: What is it? How can you best utilize it?

The content of this post is solely the responsibility of the author.  AT&T does not adopt or endorse any of the views, positions, or information provided by the author in this article.  Data continues to be a valuable asset for an organization and plays a crucial role in making operational and strategic business decisions. With […]

Cyber News, Cyber Threat Trends

Feds Hit DDoS-for-Hire Services with 48 Domain Seizures

Six also charged in connection with booter services

Cyber News, Cyber Threat Trends

Feds Hit DDoS-for-Hire Services with 48 Domain Seizures

Six also charged in connection with booter services

Cyber News, Cyber Threat Trends

Platforms Flooded with 144,000 Phishing Packages

NuGet, PyPi and npm inundated with malicious packages

Cyber News, Cyber Threat Trends

Reimagining Democracy

Last week, I hosted a two-day workshop on reimagining democracy. The idea was to bring together people from a variety of disciplines who are all thinking about different aspects of democracy, less from a “what we need to do today” perspective and more from a blue-sky future perspective. My remit to the participants was this: […]

Cyber News, Cyber Threat Trends
  • by
  • December 15, 2022

Hacking Using SVG Files to Smuggle QBot Malware onto Windows Systems

Phishing campaigns involving the Qakbot malware are using Scalable Vector Graphics (SVG) images embedded in HTML email attachments. The new distribution method was spotted by Cisco Talos, which said it identified fraudulent email messages featuring HTML attachments with encoded SVG images that incorporate HTML script tags. HTML smuggling is a technique that relies on using legitimate features of

Cyber News, Cyber Threat Trends
  • by
  • December 15, 2022

FBI Charges 6, Seizes 48 Domains Linked to DDoS-for-Hire Service Platforms

The U.S. Department of Justice (DoJ) on Wednesday announced the seizure of 48 domains that offered services to conduct distributed denial-of-service (DDoS) attacks on behalf of other threat actors, effectively lowering the barrier to entry for malicious activity. It also charged six suspects – Jeremiah Sam Evans Miller (23), Angel Manuel Colon Jr. (37), Shamar […]

Cyber News, Cyber Threat Trends