FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware

**Malware Campaign Exploits GitHub Repositories, Spreads SmartLoader Malware** A sophisticated malware campaign has been uncovered, using over 7,600 compromised GitHub repositories to spread the notorious SmartLoader malware. The FakeGit campaign, as it’s come to be known, demonstrates the ease with which malicious actors can exploit software development platforms and compromise users’ devices. The attackers created … Read more

Attackers Combo Up Evasion Tactics for BEC Phishing

Attackers have concocted a sophisticated phishing campaign designed to evade detection by leveraging a combination of fileless techniques and loaders with low detection rates. Dubbed “The TFF Trap” by researchers at Fortinet, this campaign has been observed since late March and has already seen widespread use in targeting Microsoft Windows systems. At its core, the … Read more

Microsoft confirms Windows Server Update Services sync delays

Microsoft is scrambling to fix a problem that’s been causing synchronization issues with its Windows Server Update Services (WSUS) servers, leaving many enterprise networks without access to the latest security patches and updates for over a week. This issue affects not just server administrators but also end-users who rely on IT teams to keep their … Read more

New HollowGraph malware uses Microsoft Graph for stealthy C2 comms

Malicious Malware Uses Microsoft Graph to Conceal Stealthy Communication with Attackers A newly discovered malware component, dubbed HollowGraph, has been found using compromised Microsoft 365 mailboxes as a command-and-control channel to receive attacker commands and exfiltrate stolen data. This sophisticated tool is part of the Cavern command-and-control framework, which has been previously linked to an … Read more

HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

A newly discovered malware strain, dubbed HollowGraph, has been found to be using Microsoft 365 events dated 2050 to conceal its command and control (C2) servers and stolen files from security detection. This cunning tactic allows the malware to evade traditional threat hunting techniques, making it a significant concern for organizations that rely on cloud-based … Read more

Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign

The discovery of an exposed server has shed light on a sophisticated phishing campaign, leveraging AI-assisted tools to spread malware through compromised WebDAV servers. The campaign, which has been ongoing for months, targets organizations across various industries, with thousands of potential victims worldwide. The exposed server, discovered by security researchers, contained a treasure trove of … Read more

An AI SOC Evaluation Guide for Security Leaders

Cybersecurity Leaders Warned: AI SOC Agents’ Hype Masks Reality of Operational Challenges A growing number of organizations are turning to Artificial Intelligence (AI) powered Security Operations Centers (SOCs) in an effort to boost threat detection and response capabilities. However, a new report from Prophet Security cautions that the reality often falls short of the hype … Read more

Mythos Didn’t Break Your Security Program. Your Exposure Window Could.

**Mythos, an AI-Powered Cybersecurity Threat: What You Need to Know** A new and potentially devastating threat is on the horizon for organizations worldwide. Mythos, an artificially intelligent (AI) system designed to identify vulnerabilities in software, has been discovered by cybersecurity researchers. While its creators intended it to help strengthen security programs, a critical flaw in … Read more

Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine

Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine A brazen campaign of espionage has been uncovered, with Russian intelligence agencies using compromised internet protocol (IP) cameras to spy on military logistics across NATO states and Ukraine. The hack, which appears to have begun in 2024, has left a … Read more

⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

A Wave of Zero-Day Exploits and RCEs Hits Global Cybersecurity Landscape The past week has been marked by a series of high-profile zero-day exploits, remote code execution (RCE) vulnerabilities, and AI-powered service attacks that have left many organizations scrambling to secure their systems. The affected platforms include popular content management system WordPress, enterprise network security … Read more