Ransomware attacks have been conducted by over 100 threat actors last year, while active ransomware families used in attacks exceeded 50, according to BleepingComputer.
Several malware strains including TrickBot, REvil, Emotet, Agent Tesla, FormBook, Maze, and Cerber have been distributed using the shellcode-based packer-as-a-service TrickGate, which has been operating stealthily for more than six years, according to The Hacker News.
Russian advanced persistent threat group Sandworm targeted a Ukraine-based energy company with the NikoWiper wiper malware in an attack last October, which coincided with Russian missile strikes against Ukraine's energy infrastructure, The Hacker News reports.
In the Enterprise News: There's lots of executive shuffling going on! Saviynt gets a new CEO and $205M in funding, Forescout appoints its 4th CEO in as many years, and Mudge finds a place at Rapid 7. We've got some interesting trends, like more focus on securing small businesses, and more cybersecurity startups pairing technology with cyber insuran...
Threat actors have been leveraging Telegram to promote the new Titan Stealer information-stealing malware, which targets Windows machines to exfiltrate browser and cryptocurrency wallet data, reports The Hacker News.
Russian state-sponsored hacking group APT29, also known as Cozy Bear, Nobelium, Yttrium, and the Dukes, has been targeting embassy-related individuals with the new GraphicalNeutrino malware, according to SecurityWeek.
This week Dr. Doug talks: Chat-GPT, Graphing calculators, Swiftslicer, VRealize, Google play, KeePass, Huawei, Github, flying cars, Jason Wood, and More on the Security Weekly News!
New infection chain components and obfuscations have been added to the updated Gootkit remote access trojan malware, also known as Gootloader, by malware operator UNC2565, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.