Network Security

The Good, the Bad and the Ugly in Cybersecurity – Week 34

The Good | Lapsus$ Teen Members Found Responsible for High-Profile Cyber Crime Spree This week, a London jury found 18 year-old Arion Kurtaj of Oxford, UK to be responsible for a series of cyberattacks against major firms, including Uber, Nvidia, and Rockstar Games. Additional charges include computer intrusion, fraud, and the demand for millions of […]

The Good, the Bad and the Ugly in Cybersecurity – Week 34 Read More »

From Conti to Akira | Decoding the Latest Linux & ESXi Ransomware Families

The evolution of the ransomware landscape has seen a shift from the more traditional approach involving Windows payloads to ones targeting other platforms, most notably Linux. In this shift, ransomware operators are shortening the time gaps between different payload releases and bringing feature parity across diverse platforms. Strategically dipping into code from well known ransomware families

From Conti to Akira | Decoding the Latest Linux & ESXi Ransomware Families Read More »

Cyber Attacks on Financial Institutions | Why Banks Are Caught in the Crosshairs

In recent years, there has been a significant uptick in the frequency and sophistication of attacks on the financial and banking industry. The following statistics illustrate the current breadth and depth of cyber attacks by various types of threat actors on financial entities: Financial institutions were the second most impacted sector based on the number

Cyber Attacks on Financial Institutions | Why Banks Are Caught in the Crosshairs Read More »

The Good, the Bad and the Ugly in Cybersecurity – Week 33

The Good | DigiHeals Aims to Boost Resilience of Healthcare Sector to Fight Off Cyber Attacks The healthcare sector has borne a particularly tough brunt of attacks over the last few years as ransomware-wielding cybercriminals have sought easy-pickings from often-under-resourced public services. Good news this week, then, as the Biden-Harris administration’s ARPA-H project has launched

The Good, the Bad and the Ugly in Cybersecurity – Week 33 Read More »

Announcing Threat Detection for Amazon S3 | AI-Powered Data Protection

SentinelOne recently announced the launch of the new Singularity Cloud Data Security product line to help customers gain visibility and provide protection for their cloud data, storage, downstream applications, and users from risks associated with unscanned files. Threat Protection for NetApp provides protection for NetApp arrays, and Threat Detection for Amazon S3, which will be

Announcing Threat Detection for Amazon S3 | AI-Powered Data Protection Read More »

CVE-2021-44228: Staying Secure – Apache Log4j Vulnerability

Executive Summary A new critical remote code execution vulnerability in Apache Log4j2, a Java-based logging tool, is being tracked as CVE-2021-44228. Further vulnerabilities in the Log4j library, including CVE-2021-44832 and CVE-2021-45046, have since come to light, as detailed here. Major services and applications globally are impacted by these vulnerabilities due to the prevalence of Log4j2’s

CVE-2021-44228: Staying Secure – Apache Log4j Vulnerability Read More »

HiveNightmare | Protecting Windows 10 Security Account Manager Against CVE-2021-36934

It has been a tough few weeks for many enterprise security teams fighting a series of severe bugs in Microsoft Windows 10. Shortly after being ‘all hands on deck’ dealing with the remote code execution (RCE) vulnerability dubbed PrintNightmare, IT admins and security teams were plunged into another unexpected crisis thanks to the emergence of

HiveNightmare | Protecting Windows 10 Security Account Manager Against CVE-2021-36934 Read More »

Log4j One Month On | Crimeware and Exploitation Roundup

It has been 31 days since the initial public disclosure of a critical remote code execution (RCE) vulnerability in the Apache Log4j logging library that upended enterprise security at the close of 2021. In that time, since the initial CVE-2021-44228 (critical), we’ve already seen five more related CVEs CVE-2021-45046 (critical) CVE-2021-4104 (high) CVE-2021-42550 (moderate) CVE-2021-45105

Log4j One Month On | Crimeware and Exploitation Roundup Read More »