Confluence exploits used to drop ransomware on vulnerable servers

Credit to Author: Andrew Brandt| Date: Thu, 16 Jun 2022 11:00:03 +0000
Automated attacks are now widely exploiting the Atlassian vulnerability
Read more
Credit to Author: Andrew Brandt| Date: Thu, 16 Jun 2022 11:00:03 +0000
Automated attacks are now widely exploiting the Atlassian vulnerability
Read more
Credit to Author: BrianKrebs| Date: Tue, 14 Jun 2022 19:53:12 +0000
Cybercrime groups that specialize in stealing corporate data and demanding a ransom not to publish it have tried countless approaches to shaming their victims into paying. The latest innovation in ratcheting up the heat comes from the ALPHV/BlackCat ransomware group, which has traditionally published any stolen victim data on the Dark Web. Today, however, the group began publishing individual victim websites on the public Internet, with the leaked data made available in an easily searchable form.
Read moreCredit to Author: Jovi Umawing| Date: Tue, 14 Jun 2022 16:00:29 +0000
An obscure group called Karakurt has extorted organizations in the US and elsewhere. Know how to keep it away from your network.
The post Karakurt extortion group: Threat profile appeared first on Malwarebytes Labs.
Read moreCredit to Author: Christopher Boyd| Date: Tue, 14 Jun 2022 12:43:08 +0000
Microsoft has warned of APT groups and ransomware authors exploiting the now patched Confluence vulnerability. We take a look at the dangers.
The post “Multiple adversaries” exploiting Confluence vulnerability, warns Microsoft appeared first on Malwarebytes Labs.
Read moreCredit to Author: Paul Oliveria| Date: Mon, 13 Jun 2022 16:00:00 +0000
The use of an unconventional programming language, multiple target devices and possible entry points, and affiliation with prolific threat activity groups have made the BlackCat ransomware a prevalent threat and a prime example of the growing ransomware-as-a-service (RaaS) gig economy.
The post The many lives of BlackCat ransomware appeared first on Microsoft Security Blog.
Read moreCredit to Author: Tejaswini Sandapolla| Date: Mon, 13 Jun 2022 13:06:21 +0000
Goodwill Ransomware, identified by CloudSEK researchers in March 2022, is known to promote social justice on the internet….
The post Robin Hood Ransomware ‘GOODWILL’ Forces Victim for Charity appeared first on Quick Heal Blog | Latest computer security news, tips, and advice.
Read moreCredit to Author: Malwarebytes Labs| Date: Mon, 13 Jun 2022 10:29:57 +0000
The most important and interesting computer security stories from the last week.
The post A week in security (June 6 – June 12) appeared first on Malwarebytes Labs.
Read moreCredit to Author: Bill Cozens| Date: Thu, 09 Jun 2022 17:30:25 +0000
Here are four big threats to cloud storage security that SMBs should be ready to address to help prevent cloud data breaches.
The post Cloud data breaches: 4 biggest threats to cloud storage security appeared first on Malwarebytes Labs.
Read moreCredit to Author: Jovi Umawing| Date: Thu, 09 Jun 2022 13:50:41 +0000
BlackBasta, a newish ransomware group that is somehow linked to Conti, has a new Linux variant of its malware that targets VMware ESXi virtual machines.
The post BlackBasta is the latest ransomware to target ESXi virtual machines on Linux appeared first on Malwarebytes Labs.
Read moreCredit to Author: Bill Cozens| Date: Wed, 08 Jun 2022 13:43:32 +0000
In this post, we’ll give you an overview of five Linux malware families your SMB should be protecting itself against — and how they work.
The post 5 Linux malware families SMBs should protect themselves against appeared first on Malwarebytes Labs.
Read more