Tag Mandiant

Man Arrested for Snowflake Hacking Operation Faces Extradition to the US

The recent investigation by Mandiant, a cybersecurity arm of Google, has unveiled significant insights regarding the breach incidents attributed to a hacker identified as UNC5537. Austin Larsen, a threat intelligence analyst at Mandiant, characterizes this hacker as “one of the most consequential threat actors of 2024.” The repercussions of these…

Read MoreMan Arrested for Snowflake Hacking Operation Faces Extradition to the US

Iran-Linked Imperial Kitten Cyber Group Aiming at Middle Eastern Tech Industries

Iran-Linked Cyber Group Targets Middle Eastern Transportation and Tech Sectors Amid Increased Activity In October 2023, a cyber group with connections to Iran intensified its operations, focusing on the transportation, logistics, and technology sectors across the Middle East, including Israel. This uptick in Iranian cyber activity aligns with the escalation…

Read MoreIran-Linked Imperial Kitten Cyber Group Aiming at Middle Eastern Tech Industries

UNC5820 Exploits Zero-Day Vulnerability in FortiManager (CVE-2024-47575)

In a troubling development for cybersecurity, Fortinet, in collaboration with Mandiant, has uncovered a widespread exploitation of FortiManager devices linked to CVE-2024-47575. This vulnerability has compromised over 50 systems across various sectors, with the threat group known as UNC5820 leveraging the flaw to facilitate data theft and unauthorized access. The…

Read MoreUNC5820 Exploits Zero-Day Vulnerability in FortiManager (CVE-2024-47575)

CISA Releases Urgent Directive for Federal Agencies Regarding Ivanti Zero-Day Vulnerabilities

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent directive on Friday, advising Federal Civilian Executive Branch (FCEB) agencies to take immediate action against two zero-day vulnerabilities found in Ivanti Connect Secure (ICS) and Ivanti Policy Secure (IPS). These threats have already been actively exploited by various malicious…

Read MoreCISA Releases Urgent Directive for Federal Agencies Regarding Ivanti Zero-Day Vulnerabilities

HBO Data Breach: FBI Involved as Hackers Obtain Game of Thrones Spoilers and More

The Federal Bureau of Investigation (FBI) has been summoned to probe a significant cybersecurity incident involving HBO, which has allegedly suffered a data breach resulting in the exposure of sensitive information, including unreleased episodes of popular shows like Game of Thrones. Hackers are reported to have extracted approximately 1.5 terabytes…

Read MoreHBO Data Breach: FBI Involved as Hackers Obtain Game of Thrones Spoilers and More

Who Embezzled 3.6 Million Tax Records from South Carolina? – Krebs on Security

In a recent development regarding a long-standing cybersecurity breach, it has been revealed that a major hack in 2012 that compromised the South Carolina Department of Revenue may have been conducted by a notorious Russian hacking group. This breach, which resulted in the theft of sensitive tax and banking information…

Read MoreWho Embezzled 3.6 Million Tax Records from South Carolina? – Krebs on Security

Microsoft Addresses 61 Vulnerabilities, Including Two Actively Exploited Zero-Day Threats

Microsoft Addresses 61 Security Vulnerabilities in May Patch Update In its latest Patch Tuesday update for May 2024, Microsoft has resolved 61 newly identified security vulnerabilities across its software products, amongst them two zero-day flaws that have been actively exploited in the wild. These updates follow a proactive security strategy…

Read MoreMicrosoft Addresses 61 Vulnerabilities, Including Two Actively Exploited Zero-Day Threats

Snowflake Issues Warning: Credential Theft Campaign Affects Cloud Customers

Cloud computing and analytics company Snowflake has reported that a select group of its clients is under targeted attack. In a recent joint statement, Snowflake, alongside cybersecurity firms CrowdStrike and Mandiant, clarified that there is no evidence linking this activity to a vulnerability, misconfiguration, or breach within their platform. Additionally,…

Read MoreSnowflake Issues Warning: Credential Theft Campaign Affects Cloud Customers