Blog
-
Industrial Control Systems in the Crosshairs of State-backed Hackers Wielding “Easy-to-Use” New Malware Kit
The malware kit has not yet been used to compromise a target, according to a public warning issued by US intelligence agencies, but has extensive capabilities for attacking a wide range of industrial control systems that are currently in use.
-
Mirai Botnet Malware Making a Resurgence Thanks To “Spring4Shell” Exploit
Organizations should have already been on top of patching Spring4Shell, but the emergence of the Mirai botnet malware campaign should be the final wake-up call.
-
Essential Guide to Penetration Testing Services
There are no two ways about it: useful penetration testing services require security professionals who understand how to hack networks and systems. Here we provide an essential guide to understanding penetration testing services.
-
Bust of Hydra Darknet Market Puts an End to $1.3 Billion in Criminal Trade
The Hydra darknet market was primarily a gathering point for criminal traffic in Eastern Europe. It was not just the largest market available in contemporary times, but is thought to be the largest ever available on the internet.
-
Axie Infinity NFT Game Used to Breach Ronin Network, Over $600 Million in Crypto Taken
Hackers breached Ronin Network via NFT game and got away with at least $625 million in crypto funds by exploiting some inactive accounts with administrator privileges that were reportedly compromised via social engineering.
-
Have the Lapsus$ Hackers Been Caught? Teens Rounded up in London Suspected of Samsung, Microsoft and Okta Breaches
One of the ringleaders of the Lapsus$ hackers, a 16 year old who goes by the online handles “breachbase” and “White,” appears to have led law enforcement to the group by getting into it with other hackers.
-
Computers in Russia, Belarus Have Files Overwritten by Open Source Project; Ukraine-Related Hacktivism Causes Major Controversy
The distribution of malware to random targets through a trusted piece of software crosses a new line, and one that that open source community is clearly not comfortable with as a form of hacktivism.
-
Authentication Services Provider Okta May Have Suffered Security Breach; Hackers Post Internal Screenshots, But Firm Says Everything is Fine
Providing authentication services to tens of thousands of companies and government agencies, Okta is a supply chain vendor that could cause a cascade of security breaches if compromised.
-
Leading Risks for CI/CD Security: Flow Control, Access & Identity Management, Dependency Chains and Pipeline Vulnerabilities
When attackers are able to insert themselves into the engineering environment via CI/CD security failings, this gives them a direct line to the production environment. This is often an area of security that receives an inadequate level of attention.
-
Russian Hackers Using PrintNightmare & MFA Configuration Vulnerabilities To Take Over Windows Systems
Russian hackers are attacking MFA configuration weaknesses, something that is often set by default, and following up with a PrintNightmare attack to take over Windows systems.










