Courtroom Digital Forensics

Abusing Windows Container Isolation Framework to avoid detection by security products

[ad_1] Abusing Windows Container Isolation Framework to avoid detection by security products Pierluigi Paganini August 31, 2023 Researchers demonstrated how attackers can abuse the Windows Container Isolation Framework to bypass endpoint security solutions. Researcher Daniel Avinoam at the recent DEF CON hacking conference demonstrated how attackers can abuse the Windows Container Isolation Framework to bypass endpoint security …

Abusing Windows Container Isolation Framework to avoid detection by security products Read More »

Labyrinth Chollima behind PyPI supply chain attacks

[ad_1] North Korea-linked APT Labyrinth Chollima behind PyPI supply chain attacks Pierluigi Paganini September 01, 2023 ReversingLabs researchers linked the VMConnect campaign to the North Korea-linked APT group Labyrinth Chollima. ReversingLabs researchers believe that the North Korea-linked APT group Labyrinth Chollima is behind the VMConnect campaign. Threat actors uploaded a series of malicious packages to …

Labyrinth Chollima behind PyPI supply chain attacks Read More »

Talos wars of customizations of the open-source info stealer SapphireStealer

[ad_1] Talos wars of customizations of the open-source info stealer SapphireStealer Pierluigi Paganini September 01, 2023 Cisco reported that multiple threat actors are customizing the SapphireStealer information stealer after the leak of its source code. Cisco Talos researchers reported that multiple threat actors have created their own version of the SapphireStealer after that the source …

Talos wars of customizations of the open-source info stealer SapphireStealer Read More »

Researchers released a free decryptor for Key Group ransomware

[ad_1] Researchers released a free decryptor for the Key Group ransomware Pierluigi Paganini September 01, 2023 Researchers released a free decryptor for the Key Group ransomware that allows victims to recover their data without paying a ransom. Threat intelligence firm EclecticIQ released a free decryption tool for the Key Group ransomware (aka keygroup777) that allows …

Researchers released a free decryptor for Key Group ransomware Read More »

Unraveling EternalBlue: inside the WannaCry’s enabler

[ad_1] Unraveling EternalBlue: inside the WannaCry’s enabler Pierluigi Paganini September 01, 2023 WannaCry and NotPetya, probably two most damaging cyberattacks in recent history, were both only made possible because of EternalBlue. Here is how the NSA-developed cyber monster works, and how you should defend against it. What is the EternalBlue vulnerability? EternalBlue is a Windows …

Unraveling EternalBlue: inside the WannaCry’s enabler Read More »

Credentials of NASA, Tesla, DoJ, Verizon, and 2K others leaked by workplace safety organization

[ad_1] National Safety Council data leak: Credentials of NASA, Tesla, DoJ, Verizon, and 2K others leaked by workplace safety organization Pierluigi Paganini August 31, 2023 The National Safety Council leaked thousands of emails and passwords of their members, including companies such as NASA and Tesla. The National Safety Council has leaked nearly 10,000 emails and …

Credentials of NASA, Tesla, DoJ, Verizon, and 2K others leaked by workplace safety organization Read More »

Russia-linked hackers target Ukrainian military with Infamous Chisel Android malware

[ad_1] Russia-linked hackers target Ukrainian military with Infamous Chisel Android malware Pierluigi Paganini August 31, 2023 Russia-linked threat actors have been targeting Android devices of the Ukrainian military with a new malware dubbed Infamous Chisel. GCHQ’s National Cyber Security Centre and international partners reported that Russia-linked threat actors are using a new malware to target …

Russia-linked hackers target Ukrainian military with Infamous Chisel Android malware Read More »

Forever 21 data breach impacted +500,000 individuals

[ad_1] Fashion retailer Forever 21 data breach impacted +500,000 individuals Pierluigi Paganini August 31, 2023 Fashion retailer Forever 21 disclosed a data breach that exposed the personal information of more than 500,000 individuals. On March 20, 2023, the fashion retailer Forever 21 has discovered a cyber incident that impacted a limited number of systems. The …

Forever 21 data breach impacted +500,000 individuals Read More »

Akira Ransomware gang targets Cisco ASA without Multi-Factor Auth

[ad_1] Akira Ransomware gang targets Cisco ASA without Multi-Factor Authentication Pierluigi Paganini August 31, 2023 Experts warn of ongoing credential stuffing and brute-force attacks targeting Cisco ASA (Adaptive Security Appliance) SSL VPNs. Cisco is aware of attacks conducted by Akira ransomware threat actors targeting Cisco ASA VPNs that are not configured for multi-factor authentication. “Cisco …

Akira Ransomware gang targets Cisco ASA without Multi-Factor Auth Read More »

Paramount Global disclosed a data breach

[ad_1] Paramount Global disclosed a data breach Pierluigi Paganini August 31, 2023 Multinational mass media conglomerate Paramount Global suffered a data breach after an unauthorized party accessed files from certain of its systems. Multinational mass media conglomerate Paramount Global disclosed a data breach. According to the data breach notification letter sent to the impacted individuals, …

Paramount Global disclosed a data breach Read More »

Scroll to Top