Tag Microsoft

Thousands of Compromised TP-Link Routers Exploit Years-Long Account Takeover Campaigns

A significant cybersecurity threat has emerged involving a botnet orchestrated by hackers linked to the Chinese government. This network, comprised of thousands of compromised routers, cameras, and other Internet-connected devices, has been employed to execute sophisticated password spray attacks targeted at users of Microsoft’s Azure cloud service. The warning about…

Read MoreThousands of Compromised TP-Link Routers Exploit Years-Long Account Takeover Campaigns

Exploitation of MS Exchange Server Vulnerabilities to Deploy Keyloggers in Targeted Attacks

In recent developments, a previously unidentified threat actor has been leveraging existing security vulnerabilities in Microsoft Exchange Server to deploy keylogger malware, with targets primarily located in Africa and the Middle East. This alarming trend was highlighted by Positive Technologies, a Russian cybersecurity firm, which reports over 30 victims, including…

Read MoreExploitation of MS Exchange Server Vulnerabilities to Deploy Keyloggers in Targeted Attacks

Chinese Hackers Employ Quad7 Botnet for Credential Theft

Hackers Exploiting Password Spraying Techniques Target Microsoft Accounts In a recently issued alert, Microsoft has warned of ongoing password spraying attacks orchestrated by multiple Chinese hacking groups utilizing a botnet known as Quad7. Named after a TCP routing port number, this botnet is comprised of approximately 8,000 compromised devices, predominantly…

Read MoreChinese Hackers Employ Quad7 Botnet for Credential Theft

IBM Data Breach 2024: Could It Be a Hoax?

A cyber threat group named 888 has gained attention following its recent assertion of a successful breach into the servers of International Business Machines (IBM). The group claims to have stolen approximately 17,500 records containing sensitive information related to both current and former employees of the company. However, skepticism surrounds…

Read MoreIBM Data Breach 2024: Could It Be a Hoax?

2024 Permiso State of Identity Security: Major Changes on the Horizon

Identity security has emerged as a pressing concern following a series of significant breaches, with numerous high-profile organizations such as Microsoft, Okta, Cloudflare, and Snowflake experiencing security incidents. This situation has prompted stakeholders to reassess their approaches to identity security from both strategic and technological perspectives. Traditionally, identity security has…

Read More2024 Permiso State of Identity Security: Major Changes on the Horizon

Black Basta Ransomware Could Have Leveraged MS Windows Zero-Day Vulnerability

Black Basta Ransomware Exploits Windows Vulnerability Recent investigations by Symantec have revealed that threat actors associated with the Black Basta ransomware may have leveraged a newly uncovered zero-day vulnerability in the Microsoft Windows Error Reporting Service. This security flaw, identified as CVE-2024-26169, is classified as an elevation of privilege vulnerability…

Read MoreBlack Basta Ransomware Could Have Leveraged MS Windows Zero-Day Vulnerability