
Mimecast says SolarWinds hackers breached its network and spied on customers
Mimecast-issued certificate used to connect to customers’ Microsoft 365 tenants. https://arstechnica.com/gadgets/2021/03/mimecast-says-solarwinds-hackers-breached-its-network-and-spied-on-customers/ […]

Microsoft Releases Exchange On-premises Mitigation Tool
Microsoft has released the Exchange On-premises Mitigation Tool (EOMT.ps1) that can automate portions of both the detection and patching process. Microsoft stated the following along […]

Gartner Identifies Top 10 Data and Analytics Technology Trends for 2021
These Trends Can Help Organisations Respond to Change, Uncertainty and Opportunities Gartner, Inc. identified the top 10 data and analytics (D&A) technology trends for 2021 […]

Building Trust in the Digital Era: ENISA boosts the uptake of the eIDAS regulation
The European Union Agency for Cybersecurity issues technical guidance and recommendations on Electronic Identification and Trust Services helping Member States to implement the eIDAS regulation. […]

Fight phishing with these latest web scraping techniques
Organisations understand the power of data, and my job is to help them overcome challenges so they can achieve their data acquisition goals. Working with […]

Thousands Of Security Cameras Hacked, Exposing Tesla, US Jails, Hospitals
Companies whose footage was exposed include carmaker Tesla Inc. and software provider Cloudflare Inc. https://www.ndtv.com/world-news/thousands-of-security-cameras-hacked-exposing-tesla-jails-hospitals-2387447 […]

Chinese hackers targeted SolarWinds customers in parallel with Russian op
New data suggests that Russia wasn’t the only nation state hacking customers. https://arstechnica.com/gadgets/2021/03/chinese-hackers-targeted-solarwinds-customers-in-parallel-with-russian-op/ […]

New Side-Channel Attack Targets the CPU Ring Bus for the First Time
In a paper published today, a team of academics from the University of Illinois at Urbana-Champaign have published details about a new side-channel attack against […]

At Least 30,000 U.S. Organizations Newly Hacked Via Holes in Microsoft’s Email Software
At least 30,000 organizations across the United States — including a significant number of small businesses, towns, cities and local governments — have over the […]

Gootloader Hackers Poison Websites Globally in Order to Infect Business Professionals with Ransomware, Intrusion Tools and Bank Trojans, Warns eSentire
eSentire, a global provider of Managed Detection and Response (MDR) cybersecurity solutions, reported today that the hackers behind the malicious downloader, Gootloader, have poisoned websites […]

Hackers share methods to bypass 3D Secure for payment cards
Cybercriminals are constantly exploring and documenting new ways to go around the 3D Secure (3DS) protocol used for authorizing online card transactions. https://www.bleepingcomputer.com/news/security/hackers-share-methods-to-bypass-3d-secure-for-payment-cards/ […]

Ryuk Ransomware Updated With ‚Worm-Like Capabilities‘
Prolific Ransomware Can ‚Spread Automatically‘ Inside Networks, CERT-FR Warns https://www.bankinfosecurity.co.uk/ryuk-ransomware-updated-worm-like-capabilities-a-16080 […]

Brand(ed) Lures and GuLoader – The New Face of Email-based Attacks
After analyzing millions of emails, Cofense researchers have summarized some key patterns used during the attacks in the past year. According to them, cybercriminals are […]

Hackers Using Tricky SEO Technique to Deliver Malware Payloads
Cyberattackers are now using a novel attack technique in which they are using Google SEO to deploy malware payloads. This technique takes advantage of human […]

North Korean Hackers Targeting Defense Firms with ThreatNeedle Malware
A prolific North Korean state-sponsored hacking group has been tied to a new ongoing espionage campaign aimed at exfiltrating sensitive information from organizations in the […]

Hypervisor Jackpotting: CARBON SPIDER and SPRITE SPIDER Target ESXi Servers With Ransomware to Maximize Impact
Targeted large-scale ransomware campaigns, referred to as big game hunting (BGH), remained the primary eCrime threat to organizations across all sectors in 2020. The relentless […]
