Western Digital Confirms Customer Data Stolen by Hackers in March Breach
By:
May 08, 2023Ravie LakshmananData Breach / Ransomware
Digital storage giant Western Digital confirmed that an "unauthorized third party" gained access to its systems and stole personal information belonging to...
MSI Data Breach: Private Code Signing Keys Leaked on the Dark Web
By:
May 08, 2023Ravie LakshmananData Breach / Software Security
The threat actors behind the ransomware attack on Taiwanese PC maker MSI last month have leaked the company's private code signing...
Meta Uncovers Massive Social Media Cyber Espionage Operations Across South Asia
By:
Three different threat actors leveraged hundreds of elaborate fictitious personas on Facebook and Instagram to target individuals located in South Asia as part of disparate attacks.
"Each of these...
Tonto Team Uses Anti-Malware File to Launch Attacks on South Korean Institutions
By:
Apr 28, 2023Ravie LakshmananMalware / Cyber Threat
South Korean education, construction, diplomatic, and political institutions are at the receiving end of new attacks perpetrated by a China-aligned threat actor...
Paperbug Attack: New Politically-Motivated Surveillance Campaign in Tajikistan
By:
A little-known Russian-speaking cyber-espionage group has been linked to a new politically-motivated surveillance campaign targeting high-ranking government officials, telecom services, and public service infrastructures in Tajikistan.
The intrusion set,...
Kubernetes RBAC Exploited in Large-Scale Campaign for Cryptocurrency Mining
By:
Apr 21, 2023Ravie LakshmananKubernetes / Cryptocurrency
A large-scale attack campaign discovered in the wild has been exploiting Kubernetes (K8s) Role-Based Access Control (RBAC) to create backdoors and run cryptocurrency...
Iranian Government-Backed Hackers Targeting U.S. Energy and Transit Systems
By:
Apr 19, 2023Ravie LakshmananCyber Threat / SCADA
An Iranian government-backed actor known as Mint Sandstorm has been linked to attacks aimed at critical infrastructure in the U.S. between late...
U.S. and U.K. Warn of Russian Hackers Exploiting Cisco Router Flaws for Espionage
By:
Apr 19, 2023Ravie LakshmananNetwork Security / Cyber Espionage
U.K. and U.S. cybersecurity and intelligence agencies have warned of Russian nation-state actors exploiting now-patched flaws in networking equipment from Cisco...
Pakistani Hackers Use Linux Malware Poseidon to Target Indian Government Agencies
By:
Apr 19, 2023Ravie LakshmananLinux / Malware
The Pakistan-based advanced persistent threat (APT) actor known as Transparent Tribe used a two-factor authentication (2FA) tool used by Indian government agencies as...
Google Uncovers APT41’s Use of Open Source GC2 Tool to Target Media and Job...
By:
Apr 17, 2023Ravie LakshmananCyber Threat / Cloud Security
A Chinese nation-state group targeted an unnamed Taiwanese media organization to deliver an open source red teaming tool known as Google...
















