Threat hunters at Kaspersky are publicly documenting a malicious campaign that abuses Windows event logs to store fileless last stage Trojans and keep them hidden in the file system.
Google Sees More APTs Using Ukraine War-Related Themes
Researchers at Google’s Threat Analysis Group (TAG) say the number of advanced threat actors using Ukraine war-related themes in cyberattacks went up in April with a surge in malware attacks targeting critical infrastructure.
Hubble Technology Banks $9 Million for Asset Visibility Platform
An early-stage Virginia startup has banked $9 million in venture capital funding to build an “agentless technology asset visibility” aimed at disrupting the asset management space.
F5 Informs BIG-IP Customers About 18 Serious Vulnerabilities
Security and application delivery solutions provider F5 on Wednesday released another quarterly security notification, which informs customers about more than 50 vulnerabilities and security exposures.
China-Linked Winnti APT Group Silently Stole Trade Secrets for Years: Report
“CuckooBees” campaign operated by Chinese cyber espionage group went undetected since 2019
Webinar Today: Blast Radius & Simulated Attack Paths
Cisco Issues Fresh Warning Over Counterfeit Switches
Cisco has issued a “field notice” to advise customers of its Catalyst 2960X/2960XR switches to upgrade the IOS software on their devices in order to ensure that they are not counterfeit.
Application Security Firm ShiftLeft Raises $29 Million
Application security firm ShiftLeft on Tuesday announced that it has received $29 million in expansion capital funding, which brings the total raised by the company to over $58 million.
The new funding round was led by Blackstone Innovations Investments and SYN Ventures, with participation from previous investors.
Chinese Hackers Abuse Cybersecurity Products for Malware Execution
Researchers at cybersecurity firm SentinelOne have observed a Chinese hacking group taking a trial-and-error approach to abusing antivirus applications for the sideloading of malicious DLLs.
Vulnerabilities Allow Hijacking of Most Ransomware to Prevent File Encryption
A researcher has shown how a type of vulnerability affecting many ransomware families can be exploited to control the malware and terminate it before it can encrypt files on compromised systems.













