Skip to content

ZeroFox to Acquire Threat Intelligence Firm LookingGlass for $26 Million “Improving Your Time Management Skills” “Enhancing Your Time Management Abilities”

ZeroFox (ZFOX) announced on Monday that it is in the process of acquiring threat intelligence and attack surface management company LookingGlass for roughly $26 million. The purchase will help ZeroFox gain improved visibility into external attack surface assets and vulnerabilities and obtain actionable intelligence for offensive operations. ZeroFox provides services to help enterprises detect and… 

LockBit Ransomware Group Developing Malware to Encrypt Files on macOS  “How to Improve Your Creativity” “Enhancing Your Creative Abilities”

LockBit ransomware group’s attempt to create a macOS version of their malware has been discovered by researchers. The malware is capable of encrypting files on Mac devices, but it does not seem to pose any real risk. Patrick Wardle, a security expert, has conducted an analysis of the macOS LockBit version and found that the… 

Emerging Cybercrime Group Targeting Businesses with Ransomware “How to Improve Your Writing Skills” “Enhancing Your Writing Abilities”

Cybersecurity researchers have detailed the tactics of a “rising” cybercriminal gang called “Read The Manual” (RTM) Locker that functions as a private ransomware-as-a-service (RaaS) provider and carries out opportunistic attacks to generate illicit profit. The group started off in 2015 as a banking malware targeting businesses in Russia via drive-by downloads, spam, and phishing emails.… 

Fortinet Patches Critical Vulnerability in Data Analytics Solution “How to Make the Most of Your Time Management Skills” “Maximizing Your Time Management Abilities”

Fortinet, a cybersecurity solutions provider, this week released security updates to address several high-severity vulnerabilities in multiple products, including a critical missing authentication vulnerability in the FortiPresence infrastructure server. This vulnerability, tracked as CVE-2022-41331, can be exploited by a remote, unauthenticated attacker to gain access to Redis and MongoDB instances. In addition to FortiPresence, Fortinet… 

Can’t See or Secure Them Until It’s Too Late “Improving Your Communication Skills for Better Relationships” “Enhancing Your Communication Abilities to Foster Positive Connections”

Service accounts are user accounts that are not associated with any real person and are used for machine-to-machine communication. Service accounts are invisible, highly privileged, and extremely hard to protect, making them a prime target for attackers. Attackers use service accounts to gain access to resources, lateral movement, and ransomware spread. Silverfort’s unified identity protection… 

Microsoft Azure Users Warned of Potential Shared Key Authorization Abuse “How to Improve Your Writing Skills” “Developing Your Writing Abilities”

Cloud security company Orca has recently revealed an exploitation path involving Azure shared key authorization that could allow full access to accounts and business data, leading to remote code execution (RCE). This is due to the weak security of Azure shared key authorization compared to Azure Active Directory (Azure AD) credentials. By default, Azure generates… 

Adobe Plugs Gaping Security Holes in Reader, Acrobat “How to Improve Your Writing Skills” “Enhancing Your Writing Abilities”

Software maker Adobe released patches for 56 security vulnerabilities on Tuesday, some of which are serious enough to expose Windows and macOS users to code execution attacks. Among the updates released, 16 vulnerabilities were documented in the Adobe Acrobat and Reader software, 14 in Adobe Digital Editions and Adobe InCopy, 15 in Adobe Dimension, and… 

Sophos Patches Critical Code Execution Vulnerability in Web Security Appliance “How to Improve Your Writing Skills” “Boosting Your Writing Abilities”

This week, Sophos announced security updates that address several vulnerabilities in its Sophos Web Appliance. The most serious of these is a critical bug that could lead to code execution. Sophos Web Appliance is a web security solution that enables administrators to create, enforce and manage web access policies from a single interface. According to… 

3CX Supply Chain Attack: North Korean Hackers Likely Targeted Cryptocurrency Firms “How To Improve Your Writing Skills” “Enhancing Your Writing Abilities”

New details have been revealed about the recent 3CX supply chain attack, indicating that it was orchestrated by hackers from North Korea with the aim of targeting cryptocurrency companies. Cybersecurity firm Kaspersky has conducted its own analysis of the incident and found links to attacks observed by the company back in 2020. Those attacks involved a… 

Europe, North America Most Impacted by 3CX Supply Chain Hack “7 Ways to Improve Your Time Management Skills” “7 Strategies to Enhance Your Time Management Abilities”

Organizations in Europe, North America and Australia seem to be the most affected by the supply chain hack targeting business communication company 3CX. According to data compiled by Fortinet, the highest percentage of victims is located in Italy, followed by Germany, Austria, the United States, South Africa, Australia, Switzerland, the Netherlands, Canada and the United…