Turla living off other cybercriminals’ tools in order to attack Ukrainian targets

A Russian nation-state threat actor has been observed leveraging tools from other cybercriminal groups to compromise targets in Ukraine, a recent report by Microsoft Threat Intelligence disclosed. This clandestine approach, which is the second time in as many weeks that Microsoft has highlighted the group’s effort, shows how Turla uses a wide range of attack […]

The post Turla living off other cybercriminals’ tools in order to attack Ukrainian targets appeared first on CyberScoop.

Continue reading Turla living off other cybercriminals’ tools in order to attack Ukrainian targets

Latest round of MITRE ATT&CK evaluations put cybersecurity products through rigors of ransomware 

The sixth round of tests included two ransomware variants, while also incorporating macOS for the first time.

The post Latest round of MITRE ATT&CK evaluations put cybersecurity products through rigors of ransomware  appeared first on CyberScoop.

Continue reading Latest round of MITRE ATT&CK evaluations put cybersecurity products through rigors of ransomware 

BadRAM: $10 hack unlocks AMD encrypted memory

Cybersecurity researchers have identified a vulnerability (CVE-2024-21944, aka BadRAM) affecting ADM processors that can be triggered by rogue memory modules to unlock the chips’ encrypted memory. The SPD chip can be modified using an off-the-she… Continue reading BadRAM: $10 hack unlocks AMD encrypted memory

How a Russian man’s harrowing tale shows the physical dangers of spyware

Citizen Lab and a Russian exile-led human rights group investigated spyware implanted on his phone after he was detained, beaten up and released.

The post How a Russian man’s harrowing tale shows the physical dangers of spyware appeared first on CyberScoop.

Continue reading How a Russian man’s harrowing tale shows the physical dangers of spyware

Russian-linked Turla caught using Pakistani APT infrastructure for espionage

Both Microsoft and Lumen’s BlackLotus Labs found Turla spying on Afghanistan and India via Pakistani infrastructure.

The post Russian-linked Turla caught using Pakistani APT infrastructure for espionage appeared first on CyberScoop.

Continue reading Russian-linked Turla caught using Pakistani APT infrastructure for espionage

Horns&Hooves campaign delivers NetSupport RAT and BurnsRAT

Attackers are sending malicious scripts that download the Remote Manipulator System (RMS) build, known as BurnsRAT, and NetSupport RAT Continue reading Horns&Hooves campaign delivers NetSupport RAT and BurnsRAT

ESET researchers analyze first UEFI bootkit for Linux systems

ESET Research has discovered the first UEFI bootkit designed for Linux systems, named Bootkitty by its creators. Researchers believe this bootkit is likely an initial proof of concept, and based on ESET telemetry, it has not been deployed in the wild. … Continue reading ESET researchers analyze first UEFI bootkit for Linux systems