Tag “Fortinet”

Winnti APT41 Aims at Japanese Companies in RevivalStone Cyber Espionage Operation

A new cyber campaign named RevivalStone has been attributed to the China-linked threat actor known as Winnti, targeting Japanese firms in the manufacturing, materials, and energy sectors as recently as March 2024. This initiative, as outlined by Japanese cybersecurity firm LAC, coincides with activities tracked by Trend Micro as Earth…

Read MoreWinnti APT41 Aims at Japanese Companies in RevivalStone Cyber Espionage Operation

New Variant of Snake Keylogger Uses AutoIt Scripting to Bypass Detection

A new variant of the Snake Keylogger is intensifying its malicious activities, primarily targeting Windows users in countries including China, Turkey, Indonesia, Taiwan, and Spain. According to Fortinet FortiGuard Labs, this malware has been linked to over 280 million blocked infection attempts globally since the beginning of the year. Snake…

Read MoreNew Variant of Snake Keylogger Uses AutoIt Scripting to Bypass Detection

Tenable, Qualys, and Workday: Overview of Data Breaches and Security Enhancements

This week, cybersecurity concerns took center stage as several prominent companies revealed serious data breaches linked to vulnerabilities in third-party service providers. The incidents, notably affecting Tenable, Qualys, and Workday, underscore the significant risks inherent in today’s digital supply chain. Tenable and Qualys, well-known leaders in vulnerability management, disclosed that…

Read MoreTenable, Qualys, and Workday: Overview of Data Breaches and Security Enhancements

Silver Fox APT Deploys Winos 4.0 Malware in Cyber Attacks Targeting Taiwanese Entities

A significant cybersecurity threat has emerged targeting enterprises in Taiwan, characterized by a new strain of malware known as Winos 4.0. This malware is disseminated through phishing emails disguising themselves as communications from the National Taxation Bureau of Taiwan. The malicious campaign was first identified last month by Fortinet’s FortiGuard…

Read MoreSilver Fox APT Deploys Winos 4.0 Malware in Cyber Attacks Targeting Taiwanese Entities

Zerobot Botnet Surges as a Rising Threat with Enhanced Exploits and Features

The Zerobot DDoS botnet has undergone significant updates, enhancing its capacity to target a broader range of internet-connected devices and expand its network. Microsoft Threat Intelligence Center (MSTIC) is closely monitoring this evolving threat, referring to it as DEV-1061, which encompasses unidentified, emerging, or developing activity clusters. First reported by…

Read MoreZerobot Botnet Surges as a Rising Threat with Enhanced Exploits and Features

Fortinet Advocates for FortiSwitch Upgrades to Address Critical Admin Password Vulnerability

Critical Security Flaw Discovered in Fortinet’s FortiSwitch Fortinet has issued urgent security updates following the discovery of a significant vulnerability in its FortiSwitch network switches. This critical flaw, identified as CVE-2024-48887, has a high CVSS score of 9.3 out of 10, indicating that it poses severe risks to system security.…

Read MoreFortinet Advocates for FortiSwitch Upgrades to Address Critical Admin Password Vulnerability

Microsoft Addresses 125 Vulnerabilities, Including Exploited Windows CLFS Flaw

In recent developments, Microsoft has unveiled critical security patches addressing a staggering array of 125 vulnerabilities across its software platforms. Among these, one vulnerability has been identified as under active exploitation in the wild, raising significant alarms within the cybersecurity community. Of the reported vulnerabilities, 11 are designated as Critical,…

Read MoreMicrosoft Addresses 125 Vulnerabilities, Including Exploited Windows CLFS Flaw

Researchers Discover Hidden Malicious Code in PyPI Python Packages

Recent investigations have revealed that four rogue packages infiltrated the Python Package Index (PyPI), executing a series of malicious operations including the deployment of malware, the removal of the netstat utility, and the manipulation of the SSH authorized_keys file. The targeted packages—aptx, bingchilling2, httops, and tkint3rs—collectively amassed around 450 downloads…

Read MoreResearchers Discover Hidden Malicious Code in PyPI Python Packages

Hackers Exploit Russian Bulletproof Host Proton66 for Worldwide Attacks and Malware Distribution

Recent cybersecurity research has revealed a significant increase in cyber threats linked to the Russian bulletproof hosting service, Proton66. Analysts have documented a variety of malicious activities that include mass scanning, credential brute-forcing, and exploitation attempts emanating from this provider, with the uptick in activity noted since January 8, 2025.…

Read MoreHackers Exploit Russian Bulletproof Host Proton66 for Worldwide Attacks and Malware Distribution