Cyber Security Alerts & Threat Intelligence

Stay up to date with the latest security alerts and threat intelligence updates

Latest Alerts

  • Twitter Suspends Accounts Used to Snare Security Researchers

    The accounts were used to catfish security researchers into downloading malware in a long-running cyber-espionage campaign attributed to North Korea.

  • Podcast: Could the Zoho Flaw Trigger SolarWinds 2.0?

    Companies are worried that the highly privileged password app could let attackers deep inside an enterprise’s footprint, says Redscan’s George Glass.

  • CISA, FBI, and NSA Release Joint Cybersecurity Advisory on Blackmatter Ransomware

    Original release date: October 18, 2021 CISA, the Federal Bureau of Investigation (FBI), and the National Security Agency (NSA) have released joint Cybersecurity Advisory (CSA): BlackMatter Ransomware. Since July 2021, malicious cyber actors have used BlackMatter ransomware to target multiple U.S. critical infrastructure entities, including a U.S. Food and Agriculture Sector organization. Using an analyzed sample of BlackMatter ransomware and information from trusted third parties, this CSA provides cyber actor tactics, techniques, and procedures and outlines mitigations to improve ransomware protection, detection, and response. To reduce the risk of BlackMatter ransomware, CISA, FBI, and NSA encourage organizations to implement the…

  • AA21-291A: BlackMatter Ransomware

    Original release date: October 18, 2021 Summary Actions You Can Take Now to Protect Against BlackMatter Ransomware • Implement and enforce backup and restoration policies and procedures. • Use strong, unique passwords. • Use multi-factor authentication. • Implement network segmentation and traversal monitoring. Note: this advisory uses the MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK®) framework, version 9. See the ATT&CK for Enterprise for all referenced threat actor tactics and techniques. This joint Cybersecurity Advisory was developed by the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the National Security Agency (NSA) to provide information…

  • Vulnerability Summary for the Week of October 11, 2021

    Original release date: October 18, 2021   High Vulnerabilities Primary Vendor — Product Description Published CVSS Score Source & Patch Info ardour — ardour Ardour v5.12 contains a use-after-free vulnerability in the component ardour/libs/pbd/xml++.cc when using xmlFreeDoc and xmlXPathFreeContext. 2021-10-08 7.5 CVE-2020-22617 MISC MISC digi — realport An issue was discovered in Digi RealPort for Windows through 4.8.488.0. A buffer overflow exists in the handling of ADDP discovery response messages. This could result in arbitrary code execution. 2021-10-08 7.5 CVE-2021-35977 MISC sophos — hitmanpro.alert A local attacker could execute arbitrary code with administrator privileges in HitmanPro.Alert before version Build 901.…

  • Missouri Vows to Prosecute ‘Hacker’ Who Informed State About Data Leak

    Missouri Gov. Mike Parson launched a criminal investigation of a reporter who flagged a state website that exposed 100K+ Social-Security numbers for teachers and other state employees.

  • TrickBot Gang Enters Cybercrime Elite with Fresh Affiliates

    The group – which also created BazarLoader and the Conti ransomware – has juiced its distribution tactics to threaten enterprises more than ever.

  • Rickroll Grad Prank Exposes Exterity IPTV Bug

    IPTV and IP video security is increasingly under scrutiny, even by high school kids.

  • Ongoing Cyber Threats to U.S. Water and Wastewater Systems Sector Facilities

    Original release date: October 14, 2021 CISA, the Federal Bureau of Investigation (FBI), the Environmental Protection Agency (EPA), and the National Security Agency (NSA) have released a joint Cybersecurity Advisory (CSA) that details ongoing cyber threats to U.S. Water and Wastewater Systems (WWS) Sector. This activity—which includes cyber intrusions leading to ransomware attacks—threatens the ability of WWS facilities to provide clean, potable water to, and effectively manage the wastewater of, their communities. The joint CSA provides extensive mitigations and resources to assist WWS Sector facilities in strengthening operational resilience and cybersecurity practices. CISA has also released a Cyber Risks & Resources…

  • AA21-287A: Ongoing Cyber Threats to U.S. Water and Wastewater Systems

    Original release date: October 14, 2021 Summary Immediate Actions WWS Facilities Can Take Now to Protect Against Malicious Cyber Activity • Do not click on suspicious links. • If you use RDP, secure and monitor it. • Use strong passwords. • Use multi-factor authentication. Note: This Alert uses the MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK®) framework, version 9. See the ATT&CK for Enterprise for all referenced threat actor tactics and techniques. This joint advisory is the result of analytic efforts between the Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Agency (CISA), the Environmental Protection Agency (EPA),…

  • Brizy WordPress Plugin Exploit Chains Allow Full Site Takeovers

    A stored XSS and arbitrary file-upload bug can be paired with an authorization bypass to wreak havoc.

  • FreakOut Botnet Turns DVRs Into Monero Cryptominers

    The new Necro Python exploit targets Visual Tool DVRs used in surveillance systems.

Need Expert Cybersecurity Guidance?

Our US-based Security Operations Center is ready to help protect your organization.