Tag Sophos

Inside Sophos’ Five-Year Battle Against Chinese Hackers Targeting Its Devices

In a revealing report, UK cybersecurity firm Sophos has highlighted a prolonged and intricate battle with a group of hackers based in Chengdu, China. This confrontation, which has persisted for over five years, underscores a troubling reality in the cybersecurity landscape: devices that are designed to shield organizations from cyber…

Read MoreInside Sophos’ Five-Year Battle Against Chinese Hackers Targeting Its Devices

Sophos Reveals Five Years of Ongoing Chinese Cyberattacks

Volt Typhoon, APT31, APT41 Target Sophos Firewall Devices: A Wake-Up Call for Cybersecurity In a significant disclosure, firewall manufacturer Sophos reported a sustained five-year assault by various Chinese state-sponsored hacking groups on its security appliances. The revelation, described by Sophos as a crucial wake-up call for the cybersecurity sector, highlights…

Read MoreSophos Reveals Five Years of Ongoing Chinese Cyberattacks

Microsoft Releases Patches for 51 Vulnerabilities, Featuring a Critical MSMQ Flaw

Microsoft Addresses 51 Vulnerabilities in June Patch Tuesday Update In its latest Patch Tuesday update for June 2024, Microsoft has rolled out security updates to address 51 vulnerabilities across its products. Among these, one vulnerability has been classified as Critical, while the remaining 50 are deemed Important. This release also…

Read MoreMicrosoft Releases Patches for 51 Vulnerabilities, Featuring a Critical MSMQ Flaw

Cybersecurity Updates: Data Breaches, Vulnerabilities, and Threats

This week’s Cybersecurity Newsletter provides crucial updates and insights into the ever-changing landscape of cybersecurity threats. Business owners and professionals are encouraged to stay informed about the latest developments that could impact their organizations’ security posture. The digital world continues to evolve, introducing new threats and innovative strategies from adversaries.…

Read MoreCybersecurity Updates: Data Breaches, Vulnerabilities, and Threats

Enhanced Qilin Ransomware Intensifies Encryption and Evasion Tactics

Rust-Based Ransomware Implements Sophisticated Anti-Detection Measures In a disturbing development in the cyber threat landscape, a Russian-speaking ransomware group has unveiled a new variant dubbed Qilin.B, characterized by its advanced capabilities designed to thwart cyber defenses. These enhancements include log wiping, backup system disruption, and the ability to halt decryption…

Read MoreEnhanced Qilin Ransomware Intensifies Encryption and Evasion Tactics

The Concealed Dangers of Legacy MFA

In today’s rapidly evolving cybersecurity landscape, organizations are often confronted by threats that were previously underestimated or overlooked. A recent advisory issued by the Department of Homeland Security (DHS), in partnership with the Cybersecurity and Infrastructure Security Agency (CISA) and the FBI, illustrates the urgency for organizations to adopt advanced…

Read MoreThe Concealed Dangers of Legacy MFA

New Qilin Ransomware Targeting VPN Credentials to Exfiltrate Chrome Data

The recent Qilin ransomware attack has raised significant alarms within the cybersecurity community, particularly due to the method employed by the threat actors. Reports indicate that these attackers compromised a limited number of endpoints by stealing credentials stored in Google Chrome browsers. This credential harvesting technique represents an alarming evolution…

Read MoreNew Qilin Ransomware Targeting VPN Credentials to Exfiltrate Chrome Data

Experts Uncover Three Chinese-Linked Groups Responsible for Cyberattacks in Southeast Asia

In a concerning resurgence of cyber espionage, a newly identified operation linked to Chinese state-sponsored groups, codenamed Crimson Palace, has been detected targeting multiple government entities across Southeast Asia. This resurgence suggests a notable escalation in the scope of state-directed cyber intrusions, raising significant alarms among regional cybersecurity experts. Cybersecurity…

Read MoreExperts Uncover Three Chinese-Linked Groups Responsible for Cyberattacks in Southeast Asia

Low-Key ‘Dark Angels’ Achieve Record Ransom Earnings – Krebs on Security

A ransomware group known as Dark Angels has garnered attention following reports of a record-breaking $75 million ransom payment by a Fortune 50 company. Security analysts confirm that Dark Angels has been active since 2021, although they often evade media scrutiny by operating independently and maintaining a low profile, targeting…

Read MoreLow-Key ‘Dark Angels’ Achieve Record Ransom Earnings – Krebs on Security