Mitigations for new PetitPotam NTLM relay attack
Microsoft has released the update for the new PetitPotam NTLM relay attack. An attacker can take over domain controllers and other windows servers in this attack. Gilles Lionel a French…
Guarding the Digital Frontier
Microsoft has released the update for the new PetitPotam NTLM relay attack. An attacker can take over domain controllers and other windows servers in this attack. Gilles Lionel a French…
The DarkTracer Threat intelligence group has reported that a new ransomware threat going by the name of “HARON” has opened a leak blog in the Darknet. Their darkweb blog of…
Saudi Aramco has suffered a massive ransomware attack, the attackers are able to stole 1TB of the data and then put it on sale in the darknet. Saudi Aramco is…
US Department of Justice (DOJ) indicted four members of the Chinese state-sponsored hacking group known as APT40 for hacking various companies, universities, and government entities in the US and worldwide.…
US government is offering 10 million USD for any TIP on nation state hackers. The United States government has taken two more active measures to fight and defend against malicious…
Even when China and India are engaged in Border Standoff. Chinese PLA unit is doing covert tactics to target the establishment of India. This proves that Chinese hackers are state…
Pharmaceutical and cosmetic group Pierre Fabre who was a victim of REvil ransomware attack in March 2021, and attack also impacted some of its production sites seems its data has…
CNA which is the seventh-largest commercial insurance firm in the US notified its customers that its data is breached post a Ransomware attack in March. The company provides an extensive…
Morgan Stanley is a leading global financial services firm providing investment banking, securities, wealth and investment management services worldwide reported data breach after the attackers stole the data belonging to…
Kaseya customers are being targeted by the Threat actors using the SPAM mails. In the spam campaign attackers are pushing Cobalt Strike payloads disguised as Kaseya VSA security updates. Cobalt…