Tag: SOC Prime Platform

HYPERSCRAPE Detection: Iranian Cyberespionage Group APT35 Uses a Custom Tool to Steal User Data 3 min read Latest Threats HYPERSCRAPE Detection: Iranian Cyberespionage Group APT35 Uses a Custom Tool to Steal User Data by Veronika Telychko SOC Prime Threat Bounty — July 2022 Results 4 min read SOC Prime Threat Bounty — July 2022 Results by Alla Yurchenko Detecting SEABORGIUM Campaigns: A Cyberespionage Group Targeting Governments, Military, and NGOs Across Europe 3 min read Latest Threats Detecting SEABORGIUM Campaigns: A Cyberespionage Group Targeting Governments, Military, and NGOs Across Europe by Daryna Olyniychuk Zeppelin Ransomware Detection: CISA and FBI Issue a Joint Advisory for Enhanced Protection Against RaaS Threats 4 min read Latest Threats Zeppelin Ransomware Detection: CISA and FBI Issue a Joint Advisory for Enhanced Protection Against RaaS Threats by Veronika Telychko BlueSky Ransomware Detection: Targets Windows Hosts and Leverages Multithreading for Faster Encryption 4 min read Latest Threats BlueSky Ransomware Detection: Targets Windows Hosts and Leverages Multithreading for Faster Encryption by Veronika Telychko Cuba Ransomware Detection: Tropical Scorpius Threat Actors Deploy Novel RAT Malware in Targeted Attacks 5 min read Latest Threats Cuba Ransomware Detection: Tropical Scorpius Threat Actors Deploy Novel RAT Malware in Targeted Attacks by Veronika Telychko Armageddon APT aka UAC-0010 Uses GammaLoad and GammaSteel Malware in Targeted Cyber-Attacks on Ukraine 3 min read Latest Threats Armageddon APT aka UAC-0010 Uses GammaLoad and GammaSteel Malware in Targeted Cyber-Attacks on Ukraine by Veronika Telychko CVE-2022-27925 Detection: Mass Exploitation of Remote Code Execution (RCE) Vulnerability in Zimbra Collaboration Suite 3 min read Latest Threats CVE-2022-27925 Detection: Mass Exploitation of Remote Code Execution (RCE) Vulnerability in Zimbra Collaboration Suite by Veronika Telychko CVE-2022-31672 Detection: Pre-Authenticated Remote Code Execution Exploit Using Patched Vulnerabilities in VMware vRealize Operations Management Suite 4 min read Latest Threats CVE-2022-31672 Detection: Pre-Authenticated Remote Code Execution Exploit Using Patched Vulnerabilities in VMware vRealize Operations Management Suite by Veronika Telychko CVE-2022-30333 Detection: New Security Hole in the UnRAR Utility 3 min read Latest Threats CVE-2022-30333 Detection: New Security Hole in the UnRAR Utility by Anastasiia Yevdokimova