SolarWinds hackers compromised email accounts of employees at 27 US Attorneys' offices
The hackers are believed to have had access to compromised accounts from approximately May 7 to December 27, 2020.
The hackers are believed to have had access to compromised accounts from approximately May 7 to December 27, 2020.
The agency advises to avoid connecting to public Wi-Fi, and use a corporate or personal Wi-Fi hotspot with strong authentication and encryption whenever possible.
The attackers claim they encrypted the company’s files, including 1TB of personal data, financial reports and other documents.
The Meteor wiper was developed in the past three years and seems to be designed for reuse in multiple campaigns.
The threat actor used alluring social media persona to infect the machine of an employee of the US aerospace defense contractor with the LEMPO malware.
CVE-2019-19781 was the most exploited flaw in 2020.
The latest version of PlugX has a variety of plug-ins that allow hackers to monitor, update and interact with the compromised system.
The BlackMatter group is currently seeking affiliates via ads for recruiting “initial access brokers,” posted on well-known hacker forums Exploit and XSS.
The hacker group relies on a custom malware toolset built specifically for IIS web servers to perform credential harvesting, reconnaissance and lateral movement.
The company has been forced to halt operations at container terminals in Durban, Ngqura, Port Elizabeth and Cape Town.
Showing elements 3131 - 3140