Cloudflare Breach: Nation-State Hackers Access Source Code and Internal Docs
Cloudflare has revealed that it was the target of a likely nation-state attack in which the threat actor leveraged stolen credentials to gain unauthorized access to its Atlassian server and ultimately access some documentation and a limited amount of source code.
View Case Studie DetailsItalian Businesses Hit by Weaponized USBs Spreading Cryptojacking Malware
UNC4990, a threat actor in Italy, uses weaponized USB devices to infect various sectors since late 2020. They deploy the EMPTYSPACE downloader via USB and third-party websites, with unclear motives, possibly involving cryptocurrency mining. The infection starts with a victim opening a malicious LNK shortcut file. Yoroi identified four EMPTYSPACE variants, including the QUIETBOARD backdoor.
View Case Studie DetailsResearchers Uncover How Outlook Vulnerability Could Leak Your NTLM Passwords
A now-patched security flaw in Microsoft Outlook could be exploited by threat actors to access NT LAN Manager (NTLM) v2 hashed passwords when opening a specially crafted file.
View Case Studie DetailsNSA Admits Secretly Buying Your Internet Browsing Data without Warrants
The U.S. National Security Agency (NSA) has admitted to buying internet browsing records from data brokers to identify the websites and apps Americans use that would otherwise require a court order, U.S. Senator Ron Wyden said last week.
View Case Studie Details