CosmicSting: A Critical XXE Vulnerability in Adobe Commerce and Magento (CVE-2024-34102)

CategoryDetailsThreat ActorsNot explicitly mentioned.Campaign OverviewExploits "CosmicSting" vulnerability (CVE-2024-34102) in Adobe Commerce and Magento, targeting e-commerce…

Analysis of Elpaco: a Mimic variant

Key Detail Information Threat Actors Unknown Campaign Overview Attackers accessed the victim’s server via RDP…

Retailers struggle after ransomware attack on supply chain tech provider Blue Yonder

Category Details Threat Actors Unknown (hackers have not identified themselves). Campaign Overview Ransomware attack disrupted…

China’s Salt Typhoon hackers target telecom firms in Southeast Asia with new malware

Category Details Threat Actors Salt Typhoon (also referred to as Earth Estrie by Trend Micro).…

OSINT Updates for November 25, 2024

https://twitter.com/UKikaski/status/1861015093703532971 On Monday , November 25 , Iran's Supreme Leader Ayatollah Ali Khamenei called for the…

South Asian hackers target Pakistani entities in new espionage campaign

Category Details Threat Actors Mysterious Elephant (also tracked as APT-K-47), likely originating from South Asia.…

25th November – Threat Intelligence Report

Threat IncidentDescription and ImpactHack on Library of Congress by foreign adversary- Targeted the Library of…

Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining and Proxyjacking

CategoryDetailsThreat ActorsPerfctl campaign (attributed to an unknown threat actor targeting Linux servers).Campaign OverviewExploits Linux servers…

Advanced threat predictions for 2025

Predicted ThreatDetails of the ThreatsHacktivist alliances to escalate in 2025- Hacktivist groups are forming alliances,…

The Overlooked Danger Within: Managing Insider Threats

Category Details Separation Anxiety Employee departures risk data leakage. Implement DLP tools, revoke access promptly,…