
Browse all articles
June 30, 2022
Details about ZingoStealer: The new, free malware-as-a-service variant
On March 18, 2022, the Telegram public group published a post detailing the release of a new version of malware, a Windows data stealer called ZingoStealer. The group created a chat bot to field information requests, deliver more information, and even enable downloads of ZingoStealer. Later, the developer announced that cryptomining functionality was added to the stealer in order to maximize profits from its operations.
June 29, 2022
Phishing campaign uses voicemail messages as lure
An ongoing wave of phishing emails is using missed voicemail messages as a lure. Multiple US companies in various sectors were targeted last week again. The goal of the attackers is to steal Microsoft 365 credentials in order to access their environments.
June 28, 2022
Prolific ransomware gang Conti retires their brand
Conti has been one of the most active ransomware gangs of late. After recent attention, the group announced that they will abandon the brand. Their infrastructure has not been updated since, and some of their leak sites are offline. Of course, this does not mean that they will fully disappear.
June 28, 2022
Important details About BlackCat: The new version of the ALPHV ransomware-as-a-service
On March 16, 2022, security specialists identified a new version of BlackCat ransomware (so named because the software displays a black cat on the victim’s payment site). These experts also noted that some previous YARA rules no longer match, which will make it difficult to find malicious files.
June 28, 2022
Windows Server updates break RRAS connections
The June 2022 cumulative updates for Windows Server have caused trouble for administrators of servers that have Routing and Remote Access Service (RRAS) enabled.
June 24, 2022
Two German energy providers hit by cyberattacks
The German energy provider Entega reported a cyberattack over the weekend, impacting their online services and the email accounts of the 2,000 employees. The critical infrastructure of the energy network was not compromised. Stadtwerke Mainz and a regional waste disposal company both reported issues as well.
June 22, 2022
Dozens of vulnerability fixes issued by Microsoft, Google
Microsoft's latest Patch Tuesday update covered 60 vulnerabilities, of which three were considered critical — meaning that they can be remotely exploited to gain full control of the machine. One of these three is the Follina vulnerability in the Microsoft Support Diagnostics Tool (MSDT), which has already been heavily exploited.







