Cybersecurity

CISA Adds Second BeyondTrust Flaw to KEV Catalog Amid Active Attacks 

CISA Adds Second BeyondTrust Flaw to KEV Catalog Amid Active Attacks 

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a second security flaw impacting BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) products to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild.
The vulnerability in question is CVE-2024-12686 (CVSS score: 6.6), a medium-severity bug that could

Hackers Exploit Aviatrix Controller Vulnerability to Deploy Backdoors and Crypto Miners 

Hackers Exploit Aviatrix Controller Vulnerability to Deploy Backdoors and Crypto Miners 

A recently disclosed critical security flaw impacting the Aviatrix Controller cloud networking platform has come under active exploitation in the wild to deploy backdoors and cryptocurrency miners.
Cloud security firm Wiz said it’s currently responding to “multiple incidents” involving the weaponization of CVE-2024-50603 (CVSS score: 10.0), a maximum severity bug that could result in

⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [13 January] 

⚡ THN Weekly Recap: Top Cybersecurity Threats, Tools and Tips [13 January] 

The cyber world’s been buzzing this week, and it’s all about staying ahead of the bad guys. From sneaky software bugs to advanced hacking tricks, the risks are real, but so are the ways to protect yourself. In this recap, we’ll break down what’s happening, why it matters, and what you can do to stay secure.
Let’s turn awareness into action and keep one step ahead

Ransomware on ESXi: The mechanization of virtualized attacks 

Ransomware on ESXi: The mechanization of virtualized attacks 

In 2024, ransomware attacks targeting VMware ESXi servers reached alarming levels, with the average ransom demand skyrocketing to $5 million. With approximately 8,000 ESXi hosts exposed directly to the internet (according to Shodan), the operational and business impact of these attacks is profound.
Most of the Ransomware strands that are attacking ESXi servers nowadays, are variants of the

WordPress Skimmers Evade Detection by Injecting Themselves into Database Tables 

WordPress Skimmers Evade Detection by Injecting Themselves into Database Tables 

Cybersecurity researchers are warning of a new stealthy credit card skimmer campaign that targets WordPress e-commerce checkout pages by inserting malicious JavaScript code into a database table associated with the content management system (CMS).
“This credit card skimmer malware targeting WordPress websites silently injects malicious JavaScript into database entries to steal sensitive payment

Expired Domains Allowed Control Over 4,000 Backdoors on Compromised Systems 

Expired Domains Allowed Control Over 4,000 Backdoors on Compromised Systems 

No less than 4,000 unique web backdoors previously deployed by various threat actors have been hijacked by taking control of abandoned and expired infrastructure for as little as $20 per domain.
Cybersecurity company watchTowr Labs said it pulled off the operation by registering over 40 domain names that the backdoors had been designed to use for command-and-control (C2). In partnership with the

Microsoft Sues Hacking Group Exploiting Azure AI for Harmful Content Creation 

Microsoft Sues Hacking Group Exploiting Azure AI for Harmful Content Creation 

Microsoft has revealed that it’s pursuing legal action against a “foreign-based threat–actor group” for operating a hacking-as-a-service infrastructure to intentionally get around the safety controls of its generative artificial intelligence (AI) services and produce offensive and harmful content.
The tech giant’s Digital Crimes Unit (DCU) said it has observed the threat actors “develop

DoJ Indicts Three Russians for Operating Crypto Mixers Used in Cybercrime Laundering 

DoJ Indicts Three Russians for Operating Crypto Mixers Used in Cybercrime Laundering 

The U.S. Department of Justice (DoJ) on Friday indicted three Russian nationals for their alleged involvement in operating the cryptocurrency mixing services Blender.io and Sinbad.io.
Roman Vitalyevich Ostapenko and Alexander Evgenievich Oleynik were arrested on December 1, 2024, in coordination with the Netherlands’ Financial Intelligence and Investigative Service, Finland’s National Bureau of

NEW CUSTOMERS CALL TODAY: 720.221.6804  |  EXISTING CUSTOMERS REQUIRING SUPPORT: 303.617.6442

X