Avatar
Dark Reading
f9e52ebe8a51b90fdaacc735e822d6ee358d91dad406768f80af646b7c85d797
Dark Reading: Connecting the Information and Security Community

A Brief History of ICS-Tailored Attacks

It's on the cyber defenders to learn from the past and make industrial control system networks hostile to attackers.

https://www.darkreading.com/attacks-breaches/brief-history-of-ics-tailored-attacks

Adversaries Ride RocketMQ Bug to DreamBus Bot Resurgence

Last seen in 2021, DreamBus Monero crypto bot is back and finding new life on vulnerable RocketMQ servers.

https://www.darkreading.com/attacks-breaches/threat-actors-riding-rocketmq-bug-to-dreambus-bot-resurgence

Chinese Group Spreads Android Spyware Via Trojan Signal, Telegram Apps

Thousands of devices have become infected with "BadBazaar," malware previously used to spy on Uyghur and Turkic ethnic minorities in China.

https://www.darkreading.com/attacks-breaches/china-group-spreads-android-spyware-via-trojan-signal-telegram-apps

APT Attacks From 'Earth Estries' Hit Gov't, Tech With Custom Malware

A sophisticated threat actor managed to fly under the radar for three years, despite flexing serious muscle.

https://www.darkreading.com/attacks-breaches/-apt-attacks-from-earth-estries-hit-govt-tech-with-custom-malware

New York Times Spoofed to Hide Russian Disinformation Campaign

"Operation Doppelganger" has convincingly masqueraded as multiple news sites with elaborate fake stories containing real bylines of journalists, blasting them out on social media platforms.

https://www.darkreading.com/threat-intelligence/new-york-times-spoofed-russian-disinformation-campaign

4 Strategies to Safeguard the Finance Industry Against Deepfake Onslaught

Through strategic measures and a united front, the finance industry can overcome the looming threat of deepfakes.

https://www.darkreading.com/vulnerabilities-threats/4-strategies-to-safeguard-the-finance-industry-against-deepfake-onslaught

Performance-Enhanced Android MMRat Scurries onto Devices Via Fake App Stores

The stealthy Trojan targets users in Southeast Asia, allowing attackers to remotely control devices to commit bank fraud.

https://www.darkreading.com/endpoint/performance-enhanced-android-mmrat-scurries-onto-devices-via-fake-app-stores

Should Senior IT Professionals Be Accountable for Professional Decisions?

Everyone makes mistakes — but what if your mistakes risk the security of millions of people?

https://www.darkreading.com/attacks-breaches/should-senior-it-professionals-be-accountable-for-professional-decisions-

In Airbnb, Cybercriminals Find a Comfortable Home for Fraud

The popular travel rental site is an ideal destination for cybercrooks bent on taking over accounts and bookings.

https://www.darkreading.com/threat-intelligence/airbnb-cybercriminals-comfortable-home-fraud

6 Ways AI Can Revolutionize Digital Forensics

Artificial intelligence tools can automate the analysis of logs, video, and other important but tedious aspects of investigations.

https://www.darkreading.com/dr-tech/6-ways-ai-can-revolutionize-digital-forensics

Unpatched Citrix NetScaler Devices Targeted by Ransomware Group FIN8

Citrix issued a patch for the critical remote code execution bug in July for its NetScaler devices.

https://www.darkreading.com/attacks-breaches/unpatched-citrix-devices-targeted-by-ransomware-group-fin8

Meta Cripples China's Signature 'Spamouflage' Influence Op

The social media giant is taking on Dragonbridge, the "largest known cross-platform covert influence operation in the world."

https://www.darkreading.com/application-security/meta-vs-china-social-giant-cripples-chinese-disinformation-apt

Sprawling Qakbot Malware Takedown Spans 700,000 Infected Machines

"Operation Duck Hunt" is not likely to eliminate the initial access botnet forever, but the proactive removal of the malware from victim machines by law enforcement is one of the largest and most sign...

https://www.darkreading.com/threat-intelligence/sprawling-qakbot-malware-takedown-spans-700-000-infected-machines

MOVEit Was a SQL Injection Accident Waiting to Happen

SQL injection and its ilk will stop being "a thing" only after organizations focus on security by construction.

https://www.darkreading.com/edge-articles/moveit-was-a-sql-injection-accident-waiting-to-happen

Somalia Orders ISPs to Block Telegram and TikTok

Officials said the apps were used to "spread horrific content and misinformation to the public."

https://www.darkreading.com/dr-global/somalia-orders-isps-to-block-access-to-telegram-and-tiktok

South African Department of Defence Denies Stolen Data Claims

Attackers leaked 1.6TB of stolen data, which government officials dismissed as "fake news."

https://www.darkreading.com/dr-global/south-african-department-of-defence-denies-stolen-data-claims