New HollowGraph malware uses Microsoft Graph for stealthy C2 comms

A New Wave of Stealthy Malware Exploits Microsoft 365 to Exfiltrate Data In a concerning development, researchers have discovered a sophisticated malware module called HollowGraph that uses the calendar feature in compromised Microsoft 365 mailboxes as a command-and-control channel for stealthy communication. The malicious component, which is part of the Cavern framework linked to an … Read more

Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign

A sophisticated phishing campaign, aided by artificial intelligence (AI), has been exposed through an unintentionally left-open server. The discovery sheds light on the inner workings of a malware distribution operation that exploited WebDAV vulnerabilities to infect unsuspecting victims’ devices. This incident highlights the growing role of AI in cybersecurity threats and underscores the importance of … Read more

FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware

**Malware Campaign Exploits GitHub Repositories, Spreads SmartLoader Malware** A sophisticated malware campaign has been uncovered, using over 7,600 compromised GitHub repositories to spread the notorious SmartLoader malware. The FakeGit campaign, as it’s come to be known, demonstrates the ease with which malicious actors can exploit software development platforms and compromise users’ devices. The attackers created … Read more

Attackers Combo Up Evasion Tactics for BEC Phishing

Attackers have concocted a sophisticated phishing campaign designed to evade detection by leveraging a combination of fileless techniques and loaders with low detection rates. Dubbed “The TFF Trap” by researchers at Fortinet, this campaign has been observed since late March and has already seen widespread use in targeting Microsoft Windows systems. At its core, the … Read more

Microsoft confirms Windows Server Update Services sync delays

Microsoft is scrambling to fix a problem that’s been causing synchronization issues with its Windows Server Update Services (WSUS) servers, leaving many enterprise networks without access to the latest security patches and updates for over a week. This issue affects not just server administrators but also end-users who rely on IT teams to keep their … Read more

New HollowGraph malware uses Microsoft Graph for stealthy C2 comms

Malicious Malware Uses Microsoft Graph to Conceal Stealthy Communication with Attackers A newly discovered malware component, dubbed HollowGraph, has been found using compromised Microsoft 365 mailboxes as a command-and-control channel to receive attacker commands and exfiltrate stolen data. This sophisticated tool is part of the Cavern command-and-control framework, which has been previously linked to an … Read more

HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

A newly discovered malware strain, dubbed HollowGraph, has been found to be using Microsoft 365 events dated 2050 to conceal its command and control (C2) servers and stolen files from security detection. This cunning tactic allows the malware to evade traditional threat hunting techniques, making it a significant concern for organizations that rely on cloud-based … Read more

Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign

The discovery of an exposed server has shed light on a sophisticated phishing campaign, leveraging AI-assisted tools to spread malware through compromised WebDAV servers. The campaign, which has been ongoing for months, targets organizations across various industries, with thousands of potential victims worldwide. The exposed server, discovered by security researchers, contained a treasure trove of … Read more

An AI SOC Evaluation Guide for Security Leaders

Cybersecurity Leaders Warned: AI SOC Agents’ Hype Masks Reality of Operational Challenges A growing number of organizations are turning to Artificial Intelligence (AI) powered Security Operations Centers (SOCs) in an effort to boost threat detection and response capabilities. However, a new report from Prophet Security cautions that the reality often falls short of the hype … Read more

Mythos Didn’t Break Your Security Program. Your Exposure Window Could.

**Mythos, an AI-Powered Cybersecurity Threat: What You Need to Know** A new and potentially devastating threat is on the horizon for organizations worldwide. Mythos, an artificially intelligent (AI) system designed to identify vulnerabilities in software, has been discovered by cybersecurity researchers. While its creators intended it to help strengthen security programs, a critical flaw in … Read more