New GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware

A New Windows Backdoor Emerges, Wiping Data and Spying on Users In a worrying development, researchers have uncovered a sophisticated backdoor malware targeting Windows systems, capable of wiping entire disks, spreading fake ransomware, and installing spyware. The new threat, discovered by experts at cybersecurity firm ESET, has been dubbed “GigaWiper.” If you use a Windows … Read more

Dormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs

A worrying trend is unfolding on GitHub, where attackers are using dormant accounts to blend in and map corporate organizations’ internal structures. Researchers have uncovered evidence of malicious activity involving these seemingly inactive profiles, which raises significant concerns about the potential for insider threats or compromised credentials. The issue highlights the importance of monitoring even … Read more

Microsoft to retire the OWA Light client in Exchange Server

Microsoft has announced plans to retire the lightweight version of its Outlook Web App email client, known as OWA Light, from Exchange Server. The decision marks a significant shift in Microsoft’s focus towards modernizing its web-based email experience, and it will likely have far-reaching implications for organizations that still rely on outdated systems. For those … Read more

Microsoft expects more Windows security updates from AI-discovered flaws

Microsoft is ramping up its efforts to bolster Windows security through artificial intelligence (AI) as the company relies increasingly on AI-powered tools to uncover vulnerabilities in its codebase. As a result, users can expect to see more frequent and extensive security updates in the coming months. The acceleration of vulnerability discovery thanks to advances in … Read more

New Helix vishing group emerges in SharePoint data theft attacks

A new threat group called Helix has emerged, using sophisticated tactics to steal sensitive data from SharePoint environments. The group’s modus operandi involves voice phishing, device code phishing, and multi-factor authentication abuse to gain access to victim accounts. Once inside, Helix operators quickly register a new authenticator app for persistence, browse and enumerate SharePoint, and … Read more

ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories

A New Era of Cyber Threats Emerges with Cloud Bucket Hijacking and AI-Powered Vulnerability Discovery The latest threat landscape is proving more complex than ever, with a surge in sophisticated attacks targeting cloud storage buckets and exploiting software vulnerabilities discovered by artificial intelligence models. In this new era of cyber threats, even the most seemingly … Read more

As Global Conflicts Go Digital, Businesses Need Wartime Gameplans

As Global Conflicts Go Digital, Businesses Need Wartime Gameplans The recent cyberattack on Ukrainian tax software company Intellect Services is a stark reminder that modern warfare has gone digital. The devastating consequences of the NotPetya malware, which spread globally and caused tens of billions of dollars in damage to thousands of companies, demonstrate how businesses … Read more

Microsoft patches RoguePlanet Defender zero-day vulnerability

A major vulnerability in Microsoft’s Defender security software has been patched by the company after a researcher exposed it. The flaw, known as “RoguePlanet,” allowed attackers to gain high-level system privileges on fully patched Windows 10 and Windows 11 devices. This serious issue was disclosed by an independent security researcher using the handle Nightmare Eclipse, … Read more