Russian hackers target Ukraine’s energy infrastructure in a new series of attacks
The threat actor used the file.io tool to download Tor, as well as LOLBAS techniques to bypass security solutions.
The threat actor used the file.io tool to download Tor, as well as LOLBAS techniques to bypass security solutions.
The group is also providing CaaS infrastructure and offering customized phishing and smishing kits.
The ransomware was deployed using the platform's on-premise LogicMonitor Collector sensor.
The campaign stands out for its high level of sophistication.
The attackers used compromised Okta Super Administrator accounts to impersonate users within targeted organizations.
The world in brief: The notorious Qakbot botnet dismantled, a free decryptor released for Key Group ransomware victims, and more.
The malware enables unauthorized access to compromised devices and is designed to steal sensitive data.
The purpose of the malicious apps is to exfiltrate data from infected Android devices.
The additional malware includes the Skipjack and Depthcharge backdoors, the Foxglove and Foxtrot keyloggers, and a new version of the Seaspy backdoor.
The company also blocked malicious website domains and fake accounts linked to the Russian “Doppelganger” operation.
Showing elements 1991 - 2000