Nation-state Attack
When the Backbone Breaks: Why the F5 Breach is a Five-Alarm Fire
Alan Shimel | | CISA directive, Cloud Security, code exfiltration, cyber resilience, Cybersecurity, Data breach, digital trust, enterprise security, F5 BIG-IP, F5 breach, government networks, Incident Response, infrastructure resilience, Infrastructure Security, it infrastructure, monoculture risk, Nation-state Attack, national security, Network Security, patch management, platform dependency, Resilience, security operations, source code theft, supply chain security, system compromise, Threat Intelligence, unpatched vulnerabilities, Vendor Risk, zero-day vulnerabilities
Alan warns that the F5 breach — involving stolen source code, unpatched vulnerabilities, and customer configurations — is a five-alarm crisis for digital infrastructure. The attack exposes national security risks, vendor concentration ...
Security Boulevard
Chinese Cybercriminal Gangs Collude on Ransomware
A Sygnia report concluded that ransomware attacks attributed to two separate cybercriminal gangs linked to China were, in fact, emanating from the same source. The report connected ransomware attacks launched by cybercriminal ...
Security Boulevard
Insurers May Not Cover ‘State-Sponsored’ Cyberattacks
Many of the more expensive cyberattacks and ransomware attacks, including the Solar Winds and Colonial Pipeline attacks, have been attributed to Russian hackers, likely working with or for the FSB—an agency of ...
Security Boulevard
Ransomware Whack-a-Mole
Lior Div | | Anti-Ransomware, Biden, cybercrime, Cybereason Anti-Ransomware Solution, EDR, endpoint detection and response, Endpoint Protection Platform, Lior Blog, Nation-state Attack, Next Generation Antivirus, RaaS, RansomOps, Ransomware, ransomware as a service, rEvil, Unified Endpoint Security
Pretty much everyone is familiar with the carnival game Whack-a-Mole. No matter how many moles you bash with the mallet, it seems like two more pop up in its place. It’s commonly ...
Microsoft Publishes Veiled Mea Culpa Disguised as Research
Sam Curry | | E5 License, EDR, endpoint detection and response, Endpoint Protection Platform, EPP, Exploits, Extended Detection and Response, Microsoft, Microsoft Exchange, Nation-state Attack, SolarWinds Attacks, Unified Endpoint Security, Vulnerabilities, vulnerability, XDR
The Microsoft Threat Intelligence Center (MSTIC) shared a report warning that NOBELIUM—the threat actor behind the SolarWinds attacks—is targeting delegated administrative privileges as part of a larger malicious campaign. Microsoft cautions that ...
Operation GhostShell: Novel RAT Targets Global Aerospace and Telecoms Firms
Cybereason Nocturnus | | Advanced persistent threat, Aerospace, Agrius APT, APT, Critical Infrastructure, cyberattack, Espionage, Europe, Iran, MalKamak, Malop, Malware, Nation-state Attack, national security, Nocturnus, Operation GhostShell, remote-access Trojan, research, ResearchCat, Russia, ShellClient RAT, telecommunications, telecoms, threat actors, Threat Intelligence, Turla, United States
In July 2021, the Cybereason Nocturnus and Incident Response Teams responded to Operation GhostShell, a highly-targeted cyber espionage campaign targeting the Aerospace and Telecommunications industries mainly in the Middle East, with additional ...
New Cybereason Government Subsidiary Empowers U.S. Agencies to Detect Malicious Operations Faster
Cybereason Security Team | | Advanced persistent threat, APT, Cybereason Anti-Ransomware Solution, Cybereason Defense Platform, Cybereason Government Inc., Cybereason XDR Platform, EDR, Endpoint Controls, endpoint detection and response, Endpoint Protection Platform, EPP, Federal Government, government, Nation-state Attack, national security, Next Generation Antivirus, ngav, Public Sector, Unified Endpoint Security
Cybereason is excited to announce the creation of a U.S. Government subsidiary, Cybereason Government Inc., dedicated to prevention, detection and response to malicious operations targeting U.S. Government agencies. Cybereason is committed to ...
UN Breach Highlights Escalation of Cyber Threats
Sam Curry | | Advanced persistent threat, APT, Authentication, Cybersecurity, government, Infosec, law enforcement, Malop, Nation-state Attack, national security, passwords
Hackers have been inside the United Nations network for months. According to a report from Bloomberg, stolen credentials of a UN employee were sold on the Dark Web for as little as ...
Afghanistan, the Taliban and National Security
Lior Div | | Afghanistan, cyberattack, Cybersecurity, government, Infosec, Nation-state Attack, national security, security, State Department, Taliban
The United States may have left classified or sensitive intelligence behind as US forces withdrew and evacuated from Afghanistan. That information might now be in the hands of the Taliban. There was ...
Implications of the Alleged State Department Breach
Sam Curry | | Advanced persistent threat, APT, cyberattack, Cybersecurity, government, Infosec, Nation-state Attack, national security, State Department
The US State Department was reportedly hit by another cyber attack, although it has not been officially confirmed. Whether or not the attack occurred, it is a simple fact that government agencies ...

