Tag: Detection Content

Linux Backdoor Gomir Detection: North Korean Kimsuky APT aka Springtail Spreads New Malware Variant Targeting South Korean Organizations 4 min read CVEs Linux Backdoor Gomir Detection: North Korean Kimsuky APT aka Springtail Spreads New Malware Variant Targeting South Korean Organizations by Veronika Zahorulko FIN7 Attack Detection: russia-linked Financially-Motivated Group Exploits Google Ads to Drop NetSupport RAT via MSIX App Installer Files 3 min read CVEs FIN7 Attack Detection: russia-linked Financially-Motivated Group Exploits Google Ads to Drop NetSupport RAT via MSIX App Installer Files by Veronika Zahorulko SOC Prime Threat Bounty Digest — April 2024 Results 3 min read SOC Prime Platform SOC Prime Threat Bounty Digest — April 2024 Results by Alla Yurchenko Black Basta Activity Detection: FBI, CISA & Partners Warn of Increasing Ransomware Attacks Targeting Critical Infrastructure Sectors, Including Healthcare 4 min read CVEs Black Basta Activity Detection: FBI, CISA & Partners Warn of Increasing Ransomware Attacks Targeting Critical Infrastructure Sectors, Including Healthcare by Daryna Olyniychuk CVE-2024-21793 and CVE-2024-26026 Detection: Exploitation of Critical F5 Central Manager Vulnerabilities Can Lead to Full System Compromise 3 min read CVEs CVE-2024-21793 and CVE-2024-26026 Detection: Exploitation of Critical F5 Central Manager Vulnerabilities Can Lead to Full System Compromise by Veronika Zahorulko Cuckoo Malware Detection: New macOS Spyware & Infostealer Targeting Intel and ARM-Based Macs  3 min read CVEs Cuckoo Malware Detection: New macOS Spyware & Infostealer Targeting Intel and ARM-Based Macs  by Veronika Zahorulko SOC Prime’s Integration Highlights with Amazon Security Lake 4 min read SOC Prime Platform SOC Prime’s Integration Highlights with Amazon Security Lake by Veronika Zahorulko CVE-2024-4040 Detection: A Critical CrushFTP Zero-Day Vulnerability Exploited in the Wild Targeting U.S. Organizations 3 min read CVEs CVE-2024-4040 Detection: A Critical CrushFTP Zero-Day Vulnerability Exploited in the Wild Targeting U.S. Organizations by Veronika Zahorulko CVE-2024-21111 Detection: A New Critical Local Privilege Escalation Vulnerability in Oracle VirtualBox with the PoC Exploit Released 2 min read CVEs CVE-2024-21111 Detection: A New Critical Local Privilege Escalation Vulnerability in Oracle VirtualBox with the PoC Exploit Released by Veronika Zahorulko Forest Blizzard aka Fancy Bear Attack Detection: russian-backed Hackers Apply a Custom GooseEgg Tool to Exploit CVE-2022-38028 in Attacks Against Ukraine, Western Europe, and North America 4 min read CVEs Forest Blizzard aka Fancy Bear Attack Detection: russian-backed Hackers Apply a Custom GooseEgg Tool to Exploit CVE-2022-38028 in Attacks Against Ukraine, Western Europe, and North America by Veronika Zahorulko