Hackers Target Bank Networks with new Rootkit to Steal Money from ATM Machines

A financially motivated threat actor has been observed deploying a previously unknown rootkit targeting Oracle Solaris systems with the goal of compromising Automatic Teller Machine (ATM) switching networks and carrying out unauthorized cash withdrawa… Continue reading Hackers Target Bank Networks with new Rootkit to Steal Money from ATM Machines

Posted in Uncategorized

Experts Find Some Affiliates of BlackMatter Now Spreading BlackCat Ransomware

An analysis of two ransomware attacks has identified overlaps in the tactics, techniques, and procedures (TTPs) between BlackCat and BlackMatter, indicating a strong connection between the two groups.
While it’s typical of ransomware groups to rebrand… Continue reading Experts Find Some Affiliates of BlackMatter Now Spreading BlackCat Ransomware

Posted in Uncategorized

Google Uncovers ‘Initial Access Broker’ Working with Conti Ransomware Gang

Google’s Threat Analysis Group (TAG) took the wraps off a new initial access broker that it said is closely affiliated to a Russian cyber crime gang notorious for its Conti and Diavol ransomware operations.
Dubbed Exotic Lily, the financially motivate… Continue reading Google Uncovers ‘Initial Access Broker’ Working with Conti Ransomware Gang

Posted in Uncategorized

Popular NPM Package Updated to Wipe Russia, Belarus Systems to Protest Ukraine Invasion

In what’s an act of deliberate sabotage, the developer behind the popular “node-ipc” NPM package shipped a new tampered version to condemn Russia’s invasion of Ukraine, raising concerns about security in the open-source and the software supply chain.
Continue reading Popular NPM Package Updated to Wipe Russia, Belarus Systems to Protest Ukraine Invasion

Posted in Uncategorized

New Vulnerability in CRI-O Engine Lets Attackers Escape Kubernetes Containers

A newly disclosed security vulnerability in the Kubernetes container engine CRI-O called cr8escape could be exploited by an attacker to break out of containers and obtain root access to the host.
“Invocation of CVE-2022-0811 can allow an attacker to p… Continue reading New Vulnerability in CRI-O Engine Lets Attackers Escape Kubernetes Containers

Posted in Uncategorized