1700 IPs and counting. [Research Saturday]
CyberWire Daily1 Juni 2024

1700 IPs and counting. [Research Saturday]

Amit Malik, Director of Threat Research at Uptycs, is sharing their work on "New Threat Detected: Inside Our Discovery of the Log4j Campaign and Its XMRig Malware." The Uptycs Threat Research Team has discovered a large-scale Log4j campaign involving over 1700 IPs, aiming to deploy XMRig cryptominer malware. This ongoing operation was initially detected through the team's honeypot collection, prompting an in-depth analysis of the campaign. The research says "The JNDI plugin is particularly useful to attackers because it allows them not only to fetch the values of environment variables in the target system but also to freely define the URL and protocol resource for the JNDI network connection." The research can be found here: New Threat Detected: Inside Our Discovery of the Log4j Campaign and Its XMRig Malware Learn more about your ad choices. Visit megaphone.fm/adchoices

Det här avsnittet är hämtat från ett öppet RSS-flöde och publiceras inte av Podme. Det kan innehålla reklam.

Avsnitt(3767)

No factoring necessary.

No factoring necessary.

Researchers find a new way to weaken RSA. ShinyHunters allegedly exposes sensitive FBI details. CISA and the FBI warn of third-party ICS risks. An OpenAI agent hacks an Australian government portal. S...

24 Sep 29min

The hunters go after the bureau.

The hunters go after the bureau.

ShinyHunters claims to have breached FBI systems. CLOSEDQUORUM malware delegates command-and-control decisions to commercial LLMs. An IT error erases 11 years of hospital maternity data. F5 patches a ...

23 Sep 28min

Storm clouds over the waterworks.

Storm clouds over the waterworks.

CISA rides out a Cyber Storm. The EU struggles to share cyber threat information. Nightmare Eclipse drops another Defender zero-day. TASK#STOMP steals business documents. North Korean operatives fake ...

22 Sep 27min

A very real-world AI test.

A very real-world AI test.

Google confirms unauthorized access by Gemini. AI’s growing power outpaces its defenses. Hackers target Colorado water utilities. Georgia weighs voting-system security. ShinyHunters hijacks Clop’s lea...

21 Sep 29min

CyberWire Daily at 10: Critical infrastructure attacks over the last 10 years. [Special Edition]

CyberWire Daily at 10: Critical infrastructure attacks over the last 10 years. [Special Edition]

In this Special Edition episode, Maria Varmazis⁠ and ⁠Dave Bittner⁠ from N2K Cyberwire get back together to reflect on the past decade of critical infrastructure attacks, evolving threats, and lessons...

20 Sep 43min

Defending Space as Critical Infrastructure. [T-Minus: Space-Cyber Briefing]

Defending Space as Critical Infrastructure. [T-Minus: Space-Cyber Briefing]

Space infrastructure has become an increasingly important part of everyday life, which has also made it an increasingly attractive target for exploitation. Host Maria Varmazis and Sean MacKirdy, Are...

20 Sep 26min

All about that proxy. [Research Saturday]

All about that proxy. [Research Saturday]

Today we are joined by Dr. Renée Burton, VP of Threat Intelligence at Infoblox, discussing their work on Lurking Lizard, "Fake Installers, Fake Reviews, Fake Services – Real Proxies, Real." The resear...

19 Sep 25min

The Cisco root route.

The Cisco root route.

Cisco patches a maximum-severity vulnerability in its Identity Services Engine. Court documents describe AI as “an astonishing theft of unprecedented proportions.” Researchers chain vulnerabilities to...

18 Sep 28min

Populärt inom Politik & nyheter

aftonbladet-krim
svenska-fall
fordomspodden
p3-krim
rss-krimstad
flashback-forever
rss-expressen-dok
rss-vad-fan-hande
aftonbladet-daily
spar
rss-sanning-konsekvens
rss-krimreportrarna
svd-ledarredaktionen
rss-flodet
rss-frandfors-horna
motiv
omni-podd
en-runda-till
politiken
rss-utopia-2