Cyber Security Week in Review: August 2, 2024
In brief: ‘Sitting Ducks’ domain hijacking attack puts at risk over a million domains, the UK shuts down Russian Coms fraud platform, and more.
In brief: ‘Sitting Ducks’ domain hijacking attack puts at risk over a million domains, the UK shuts down Russian Coms fraud platform, and more.
Cuckoo Spear remained undetected within victim networks for an extended period, often between two and three years.
The malware was monitoring one-time password messages across over 600 global brands.
The revocation affects only the certificates verified using the faulty CNAME procedure.
The commission failed to patch its on-premise Microsoft Exchange Server against the ProxyShell flaws.
Nine significant ModiLoader phishing campaigns were detected in May 2024.
CVE-2024-37085 allows attackers to obtain full administrative permissions on domain-joined ESXi hypervisors.
The group employs a variety of techniques to evade detection and deliver the implants.
A threat actor gained access to an internal collaboration tool on the bank partner’s system.
Hackers managed to bypass verification, enabling unauthorized access to third-party services through Google’s single sign-on system.
Showing elements 1261 - 1270