CosmicSting: A Critical XXE Vulnerability in Adobe Commerce and Magento (CVE-2024-34102)
CategoryDetailsThreat ActorsNot explicitly mentioned.Campaign OverviewExploits "CosmicSting" vulnerability (CVE-2024-34102) in Adobe Commerce and Magento, targeting e-commerce…
Analysis of Elpaco: a Mimic variant
Key Detail Information Threat Actors Unknown Campaign Overview Attackers accessed the victim’s server via RDP…
Retailers struggle after ransomware attack on supply chain tech provider Blue Yonder
Category Details Threat Actors Unknown (hackers have not identified themselves). Campaign Overview Ransomware attack disrupted…
China’s Salt Typhoon hackers target telecom firms in Southeast Asia with new malware
Category Details Threat Actors Salt Typhoon (also referred to as Earth Estrie by Trend Micro).…
OSINT Updates for November 25, 2024
https://twitter.com/UKikaski/status/1861015093703532971 On Monday , November 25 , Iran's Supreme Leader Ayatollah Ali Khamenei called for the…
South Asian hackers target Pakistani entities in new espionage campaign
Category Details Threat Actors Mysterious Elephant (also tracked as APT-K-47), likely originating from South Asia.…
25th November – Threat Intelligence Report
Threat IncidentDescription and ImpactHack on Library of Congress by foreign adversary- Targeted the Library of…
Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining and Proxyjacking
CategoryDetailsThreat ActorsPerfctl campaign (attributed to an unknown threat actor targeting Linux servers).Campaign OverviewExploits Linux servers…
Advanced threat predictions for 2025
Predicted ThreatDetails of the ThreatsHacktivist alliances to escalate in 2025- Hacktivist groups are forming alliances,…
The Overlooked Danger Within: Managing Insider Threats
Category Details Separation Anxiety Employee departures risk data leakage. Implement DLP tools, revoke access promptly,…