Tag Mandiant

Mimecast Discovers Hackers Behind SolarWinds Breach Took Portions of Its Source Code

Mimecast Acknowledges Source Code Breach Linked to SolarWinds Attack In a recent disclosure, email security firm Mimecast announced that it fell victim to the state-sponsored attackers behind the SolarWinds breach, illustrating the ongoing risks associated with sophisticated cyber threats. The incident, detailed in their findings, revealed unauthorized access to some…

Read MoreMimecast Discovers Hackers Behind SolarWinds Breach Took Portions of Its Source Code

Google Discovers New Malware Backdoors Associated with Iran

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime Iranian Hacking Group Unleashes Array of Custom Malware Variants Akshaya Asokan (asokan_akshaya) • November 18, 2025 Image: Evgeniyqw/Shutterstock Google has issued a warning regarding a state-sponsored Iranian hacking group known for targeting the aerospace and defense sectors in the Middle East. This…

Read MoreGoogle Discovers New Malware Backdoors Associated with Iran

Three Zero-Day Vulnerabilities Affect SonicWall Enterprise Email Security Appliances

SonicWall Tackles Critical Security Vulnerabilities Targeting Email Security Solutions SonicWall has recently patched three severe security vulnerabilities in its email security products that have been exploited in the wild. These vulnerabilities, identified as CVE-2021-20021, CVE-2021-20022, and CVE-2021-20023, were disclosed following an investigation by FireEye’s Mandiant subsidiary. The flaws were reported…

Read MoreThree Zero-Day Vulnerabilities Affect SonicWall Enterprise Email Security Appliances

Ransomware Attack Forces Shutdown of America’s Largest Fuel Pipeline

Ransomware Attack Halts Colonial Pipeline Operations, Highlighting Cybersecurity Vulnerabilities On Saturday, Colonial Pipeline, a crucial provider transporting approximately 45% of the fuel consumed on the U.S. East Coast, officially announced it has suspended operations due to a ransomware attack. This incident underscores the susceptibility of critical infrastructure to cyber threats.…

Read MoreRansomware Attack Forces Shutdown of America’s Largest Fuel Pipeline

Hackers Gained Access to Colonial Pipeline via Compromised VPN Credentials

A recent investigation has revealed that the ransomware cartel responsible for the Colonial Pipeline attack utilized a compromised virtual private network (VPN) account password to infiltrate the company’s network. This incident occurred in early May and has raised significant security concerns across the United States, particularly regarding critical infrastructure. Reports…

Read MoreHackers Gained Access to Colonial Pipeline via Compromised VPN Credentials

Nevada State Hackers Eluded Detection for Several Months

Fraud Management & Cybercrime, Government, Industry Specific Statewide Cyber Breach Affects 60 Agencies Before Ransomware Implementation Chris Riotta (@chrisriotta) • November 6, 2025 Image: Shutterstock/ISMG Recent analyses reveal that a ransomware threat actor compromised Nevada’s statewide government systems for several months prior to executing a ransomware attack. An after-action report…

Read MoreNevada State Hackers Eluded Detection for Several Months

Fortinet Alerts Users to Critical Vulnerability in FortiManager Currently Being Actively Exploited

Fortinet Confirms Critical Vulnerability in FortiManager Under Active Exploitation Fortinet has identified a significant security vulnerability affecting its FortiManager product, designated as CVE-2024-47575, with a high CVSS score of 9.8. This vulnerability, also referred to as FortiJump, relates to the FGFM protocol utilized for communication between FortiGate devices and FortiManager.…

Read MoreFortinet Alerts Users to Critical Vulnerability in FortiManager Currently Being Actively Exploited

Experts Suggest Chinese Hackers May Be Behind Multiple Attacks on Israel

A significant cybersecurity threat has emerged from a Chinese cyber espionage group known as UNC215, which has been stealthily targeting Israeli government entities and IT infrastructure since at least 2019. The group is notable for disguising its operations as Iranian hackers to evade detection, complicating forensic investigations aimed at tracing…

Read MoreExperts Suggest Chinese Hackers May Be Behind Multiple Attacks on Israel

New Zero-Day Attack Targets Windows Users Through Microsoft Office Documents

Microsoft has recently issued a warning regarding an actively exploited zero-day vulnerability affecting Internet Explorer. This flaw is being utilized to compromise Windows systems by means of malicious Microsoft Office documents. Identified as CVE-2021-40444 with a CVSS score of 8.8, the vulnerability resides in MSHTML, a proprietary browser engine that…

Read MoreNew Zero-Day Attack Targets Windows Users Through Microsoft Office Documents