China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks

A sophisticated Chinese malware campaign, codenamed “JadeProx,” has been linked to an array of high-profile attacks targeting government and healthcare organizations worldwide. The attackers have leveraged a novel exploit called TriBack Loader, which uses artificial intelligence (AI) models to rapidly identify and exploit previously unknown software vulnerabilities. Researchers at cybersecurity firms have been tracking the … Read more

Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge

A new strain of ransomware, dubbed “Chaos,” is making headlines this week after its creators found an innovative way to evade detection and maximize damage. The malware uses a sophisticated tactic involving msaRAT, a remote access tool (RAT) typically used for espionage or malicious purposes, to route command-and-control (C2) traffic through unsuspecting browsers like Chrome … Read more

FedRAMP Rev5 Is Ending: What the 20x Transition Really Requires

A New Era in Cybersecurity Assurance: FedRAMP Rev5 Replaced by Continuous Assessment Model The Federal Risk and Authorization Management Program (FedRAMP) has been at the forefront of cybersecurity standards for federal agencies and contractors. Its evolution from Rev5 to 20X marks a significant shift towards continuous, machine-readable assurance – a departure from the traditional narrative-heavy … Read more

Microsoft 365 outage affects Teams, SharePoint and other services

A widespread outage has struck Microsoft’s popular productivity suite, leaving thousands of businesses and individuals unable to access critical services. At around 11:00 a.m. ET on July 23rd, users began reporting issues with accessing Microsoft Teams, SharePoint, Excel, and other Microsoft 365 services. The outages have been severe enough to prompt Microsoft to acknowledge the … Read more

China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks

A sophisticated malware campaign, dubbed “JadeProx,” has been linked to China and targets government and healthcare organizations worldwide. This cyber threat leverages a novel exploitation technique known as TriBack Loader, which utilizes artificial intelligence (AI) models to identify vulnerabilities in software. At its core, JadeProx is a type of remote access trojan (RAT) designed to … Read more

Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge

A New Ransomware Trick: Chaos Malware Uses msaRAT, Headless Browsers to Evade Detection The cybersecurity landscape just got a whole lot more complicated with the emergence of a new ransomware strain called Chaos. This highly evasive malware has been spotted using an unusual combination of tools to route its command and control (C2) traffic through … Read more

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files

A Critical Flaw in Claude Cowork Exposes Mac Users to Unwanted Access A worrying vulnerability has been discovered in Claude Cowork, an artificial intelligence (AI) platform designed for collaborative workspaces. The flaw, which affects Mac users, allows AI agents running within virtual machines (VMs) to potentially escape their digital confines and access sensitive files on … Read more

New RefluXFS Linux flaw lets attackers gain root privileges

A critical vulnerability has been discovered in Linux systems that allows attackers to gain root privileges. Dubbed RefluXFS by Qualys’ Threat Research Unit (TRU), this flaw affects millions of systems running major enterprise Linux distributions, including Red Hat Enterprise Linux, Oracle Linux, and Amazon Linux. RefluXFS is a nine-year-old race condition vulnerability in the Linux … Read more

Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs

A Critical Linux Flaw Exposed: Nine-Year-Old RefluXFS Bug Gives Unprivileged Users Root Access on Default RHEL Installs For nearly a decade, a critical vulnerability has been lurking in the depths of Red Hat Enterprise Linux (RHEL), waiting to be exploited. The RefluXFS bug, discovered back in 2017, has finally come under scrutiny after researchers revealed … Read more