Weekly Update 382
Cyber Security Blogs Geez it’s nice to be back in Oslo! This city has such a special place in my heart for so many reasons, not least of which by virtue of being Charlotte’s home town we have so many friends and family here. Add in NDC Security this week with so many more mutual
- Published in RSS blog posts
Phemedrone info stealer campaign exploits Windows smartScreen bypass
Cyber Security BlogsThreat actors exploit a recent Windows SmartScreen bypass flaw CVE-2023-36025 to deliver the Phemedrone info stealer. Trend Micro researchers uncovered a malware campaign exploiting the vulnerability CVE-2023-36025 (CVSS score 8.8) to deploy a previously unknown strain of the malware dubbed Phemedrone Stealer. The vulnerability was addressed by Microsoft with the release of Patch Tuesday security
- Published in RSS blog posts
Akeyless Universal Secrets Connector: A Secrets Manager of Managers
Cyber Security BlogsDiscover the power of External Secrets Manager with Akeyless. Simplify secrets management across multiple platforms and clouds, centralize control, enhance visibility, and ensure compliance. Read More
- Published in RSS blog posts
How Akeyless Universal Secrets Connector is Revolutionizing Multi-Cloud Environments
Cyber Security BlogsDiscover Akeyless USC, the unified solution for centralizing and securing secrets in today’s multi-cloud environment, enhancing compliance and operational efficiency. Read More
- Published in RSS blog posts
Windows SmartScreen bug exploited to deliver powerful info-stealer (CVE-2023-36025)
Cyber Security Blogs A vulnerability (CVE-2023-36025) that Microsoft fixed in November 2023 continues to be exploited by malware peddlers: this time around, the delivered threat is a variant of the Phemedrone Stealer. About the malware Phemedrone Stealer is a piece of malware written in C#, with no dependencies. It’s capable of: Collecting system information (hardware,
- Published in RSS blog posts
MLK Day: Here’s What Every CISO Can Learn from Martin Luther King Jr.
Cyber Security Blogs MLK Day 2024: As the world commemorates Martin Luther King Jr. Day on January 15, 2024, it’s an opportune time to reflect on the enduring impact of Dr. King’s leadership. His qualities and vision not only shaped the civil rights movement but also offered timeless insights for today’s leaders, particularly Chief Information
- Published in RSS blog posts
Unmasking the Resurgence of Azorult Malware: Cyble Detects A New Dark Web Campaign
Cyber Security Blogs The notorious Azorult malware has resurfaced on the dark web again, demonstrating a renewed and sophisticated approach. First identified in 2016, Azorult operates as a powerful information-stealing threat, specializing in the extraction of sensitive data such as browsing history, login credentials, and cryptocurrency details. Cyble Research & Intelligence Labs (CRIL) recently found
- Published in RSS blog posts
Failed unsubscribes could be a clue your data’s out of control
Cyber Security Blogs Anyone who’s eveer tried to unsubscribe to an email list knows that “unsubscribe” button never seems to work — except to verify your email account is working. But what if that failure arises from something more problematic than an unethical person ignoring the request? What if it is the latest symptom of
- Published in RSS blog posts
Environmental Websites Hit by DDoS Surge in COP28 Crossfire
Cyber Security BlogsContent delivery provider Cloudflare observed a staggering surge in DDoS attacks against environmental services during COP28 Read More
- Published in RSS blog posts
British Library Catalogue Back Online After Ransomware Attack
Cyber Security BlogsThe main British Library catalogue will be back online on Monday, January 15, as the institution continues its technical rebuild following the ransomware attack last year Read More
- Published in RSS blog posts









