A recently observed GootLoader campaign has been focusing on infecting the devices of legal and accounting company employees with malware, eSentire reports.
U.S. Cyber Command Officially Links MuddyWater Group to Iranian Intelligence
The U.S. Cyber Command (CYBERCOM) on Wednesday officially tied the advanced persistent threat (APT) actor known as MuddyWater to Iranian intelligence.
New Cross-Platform Backdoor ‘SysJoker’ Used in Targeted Attacks
A backdoor likely used by an advanced persistent threat (APT) actor in targeted attacks was built to target Windows, macOS, and Linux systems, Intezer reports.
U.S. Issues Fresh Warning Over Russian Cyber Threats as Ukraine Tensions Mount
Several U.S. government agencies have issued a joint cybersecurity advisory to provide an overview of cyber operations linked to Russia. The advisory comes as tensions mount over a potential Russian invasion of Ukraine.
CISA Unaware of Any Significant Log4j Breaches in U.S.
CISA Concerned About Risk Posed by Log4Shell to Critical Infrastructure
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) says it’s currently unaware of any significant breaches related to the recently disclosed Log4j vulnerabilities.
Abcbot DDoS Botnet Linked to Older Cryptojacking Campaign
The relatively recent Abcbot botnet appears to be operated by the same cybercriminals that launched a Xanthe-based cryptojacking campaign first detailed a couple of years ago, Cado Security says.
Malware Can Fake iPhone Shutdown via ‘NoReboot’ Technique
Researchers at mobile security firm ZecOps have shown how a piece of iOS malware can achieve “persistence” on a device by faking its shutdown process.
Eight New macOS Malware Families Emerged in 2021
Eight new macOS malware families emerged in 2021, according to Patrick Wardle, a security researcher who specializes in Apple products.
CISA Says No Federal Agencies Compromised in Log4Shell Attacks to Date
Chinese Government Punishes Alibaba for Not Telling It First About Log4Shell Flaw: Report
China’s Ministry of Industry and Information Technology (MIIT) said it will temporarily suspend its collaboration with Alibaba Cloud as a cyber threat intelligence partner due to the fact that the company did not inform the government first about the discovery of the Log4Shell vulnerability, according to local media reports.













