Tag Microsoft

2,500+ Variants of Truesight.sys Driver Exploited for EDR Bypass and HiddenGh0st RAT Deployment

A significant malware campaign has been uncovered that exploits a vulnerable driver from Adlice’s software suite to circumvent security measures and deploy the Gh0st RAT malware. This revelation underscores the persistent risks that come from legacy systems and their components. The cybersecurity firm Check Point detailed a strategic approach taken…

Read More2,500+ Variants of Truesight.sys Driver Exploited for EDR Bypass and HiddenGh0st RAT Deployment

CERT-UA Alerts of UAC-0173 Attacks Targeting Ukrainian Notaries with DCRat Deployment

The Computer Emergency Response Team of Ukraine (CERT-UA) has issued an alert concerning a resurgence in cyber activity from the organized criminal group known as UAC-0173. This group is reportedly employing a remote access trojan called DCRat (also referred to as DarkCrystal RAT) to infiltrate systems. This recent campaign, which…

Read MoreCERT-UA Alerts of UAC-0173 Attacks Targeting Ukrainian Notaries with DCRat Deployment

Hackers Leverage Vulnerability in Paragon Partition Manager Driver for Ransomware Attacks

Recent investigations have unveiled that cybercriminals have exploited a critical vulnerability in the BioNTdrv.sys driver of Paragon Partition Manager, leveraging it in ransomware attacks to escalate privileges and execute unauthorized code. This significant zero-day vulnerability, classified as CVE-2025-0289, is part of a broader set of five vulnerabilities identified by Microsoft…

Read MoreHackers Leverage Vulnerability in Paragon Partition Manager Driver for Ransomware Attacks

The Growing Threat of Data Exfiltration: Why It Poses a Bigger Risk Than Ransomware

The cybersecurity landscape has seen a notable shift in recent years, transitioning from ransomware as the primary threat to the rise of data exfiltration as a significant concern for organizations. Initially, attackers exploited vulnerabilities in various systems, reaping the rewards of cryptocurrencies while victims remained unprepared to defend against intrusions.…

Read MoreThe Growing Threat of Data Exfiltration: Why It Poses a Bigger Risk Than Ransomware

European Privacy Group Takes Legal Action Against TikTok and AliExpress for Unauthorized Data Transfers to China

The Austrian privacy advocacy organization None of Your Business (noyb) has filed formal complaints against several notable companies, including TikTok, AliExpress, SHEIN, Temu, WeChat, and Xiaomi, asserting that these firms have breached data protection regulations established by the European Union by inappropriately transferring user data to China. These complaints, lodged…

Read MoreEuropean Privacy Group Takes Legal Action Against TikTok and AliExpress for Unauthorized Data Transfers to China

Cybersecurity Weekly Recap: UK Hacker Arrest and BMW Data Breach

This week, significant developments in cybersecurity illustrate the evolving threat landscape. Researchers have uncovered hidden connections among ransomware groups, highlighting a shift from individual operations to a more collaborative underground marketplace. Prominent cyber incidents included major data breaches at financial institutions and luxury brands, underscoring the risks posed by insider…

Read MoreCybersecurity Weekly Recap: UK Hacker Arrest and BMW Data Breach

Potential Catastrophe Averted: Microsoft’s Entra ID Vulnerabilities Uncovered

Significant Vulnerability Exposes Microsoft Identity Systems to Potential Exploitation A critical vulnerability recently uncovered within Microsoft’s identity management framework poses a serious risk, allowing for potential complete compromise of customers’ tenants. Michael Bargury, the Chief Technology Officer of Zenity, a security company, highlighted that although Microsoft has implemented various security…

Read MorePotential Catastrophe Averted: Microsoft’s Entra ID Vulnerabilities Uncovered