Tag: Cybersecurity Threat Advisory

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical security patches for GitLab

Cybersecurity Threat Advisory: Critical security patches for GitLab

This Cybersecurity Threat Advisory highlights GitLab’s recent critical vulnerability, which security update have been released for. A successful exploitation can allow threat actors to mask themselves as other users during scheduled security scans while they run automated tasks (also known...

/ September 22, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Updated Bumblebee malware loader discovered

Cybersecurity Threat Advisory: Updated Bumblebee malware loader discovered

Today’s Cybersecurity Threat advisory discusses the update to the popular Bumblebee malware loader that increases its defense evasion capabilities. The loader is commonly distributed via “.lnk” (softlink/shortcut) files attached to an email or compressed in a .zip archive attached to...

/ September 21, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: BlackCat ransomware targets Microsoft Azure

Cybersecurity Threat Advisory: BlackCat ransomware targets Microsoft Azure

This Cybersecurity Threat Advisory reviews the latest movements of the BlackCat ransomware gang. They are using the Sphynx encryptor to target Microsoft Azure storage through a recently discovered vulnerability in Azure’s security infrastructure. The BlackCat (ALPHV) ransomware gang is using...

/ September 20, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical Acrobat and Reader zero-day vulnerability

Cybersecurity Threat Advisory: Critical Acrobat and Reader zero-day vulnerability

This Cybersecurity Threat Advisory shares information on the new Adobe zero-day vulnerability detected in Acrobat and Reader. Adobe has taken proactive measures by issuing security updates to this zero-day vulnerability, which has been exploited in attacks. While comprehensive details about...

/ September 19, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Cyberattacks on MGM Resorts

Cybersecurity Threat Advisory: Cyberattacks on MGM Resorts

This Cybersecurity Threat Advisory highlights cyberattacks on MGM Resorts, a $33 billion hospitality and entertainment company operating out of Las Vegas. On Monday, September 11th, 2023, MGM Resorts experienced a ransomware attack that encrypted over 100 ESXi hypervisors and exfiltrated...

/ September 15, 2023 / 1 Comment
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Sophisticated phishing campaign identified

Cybersecurity Threat Advisory: Sophisticated phishing campaign identified

This Cybersecurity Threat Advisory focuses on a sophisticated phishing campaign that uses a Microsoft Word document lure to distribute a trio of threats. The threats are Agent Tesla, OriginBotnet, and RedLine Clipper, and are designed to gather a wide range...

/ September 13, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New Android zero-day exploit found

Cybersecurity Threat Advisory: New Android zero-day exploit found

This Cybersecurity Threat Advisory involves a critical zero-day vulnerability affecting Android devices, tracked as CVE-2023-35674, posing a significant threat to Android users. This vulnerability allows malicious actors to execute arbitrary code remotely, potentially compromising sensitive user data and device functionality....

/ September 12, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Zero-day vulnerabilities found in Apple’s PassKit

Cybersecurity Threat Advisory: Zero-day vulnerabilities found in Apple’s PassKit

Today’s Cybersecurity Threat Advisory involves Apple, who recently released critical updates for iPhone and Mac products after two zero-day vulnerabilities were discovered in their PassKit framework via iMessage. Both vulnerabilities allow malicious actors to perform arbitrary code execution on devices...

/ September 12, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: New VMware Aria vulnerability identified

Cybersecurity Threat Advisory: New VMware Aria vulnerability identified

Today’s Cybersecurity Threat Advisory highlights an SSH authentication bypass flaw, identified as CVE-2023-34039, which has been discovered in VMware Aria. It has a severity rating of “critical” and a CVSS v3 scope of 9.8. This vulnerability allows remote attackers to...

/ September 7, 2023
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Social engineering attacks targeting Okta

Cybersecurity Threat Advisory: Social engineering attacks targeting Okta

Today’s Cybersecurity Threat Advisory highlights Okta, who in recent weeks has experienced social engineering attacks by threat actors looking to attain highly privileged roles within Okta’s accounts. The company has warned about social engineering attacks targeting IT service desk agents...

/ September 6, 2023