Nation-state spying 🔎via  DNS

Nation-state spying 🔎via DNS

A new DNS attack method that involves registering a domain with a specific name can be leveraged for what researchers described as “nation-state level spying.” The attack method was identified…
WebDav-O targets Russsia

WebDav-O targets Russsia

Chinese state-sponsored threat groups been behind a series of targeted attacks on the Russian federal executive authority. A virus known as "Webdav-O" that was discovered in the intrusions, with the…

VMware Fixes Critical Vulns

VMware released patches for vulnerabilities tracked as CVE-2021-22002 and CVE-2021-22003, impact Workspace One Access (Access), Identity Manager (vIDM), vRealize Automation (vRA), Cloud Foundation, and vRealize Suite Lifecycle Manager. CVE-2021-22002 is related…
Cobalt Strike takes down bots

Cobalt Strike takes down bots

Cybersecurity experts have found Cobalt Strike (DoS) exploit that allows Beacon blocking C2 communication deployments and new channels. Cobalt Strike is a genuine penetration testing tool built to work as…

Ways ! Linux Shell Evades Analysis

Cybercriminals can be often seen employing Linux shell scripts for various tasks, such as disabling firewalls, monitoring agents, and modifying Access Control Lists (ACLs). Researchers published a report that describes…
Chekmarx buys Dustico

Chekmarx buys Dustico

Checkmarx, an Israeli provider of static application security testing (AST), has acquired open-source supply chain security startup Dustico for an undisclosed sum. Dustico provides a dynamic source-code analysis platform that…

CISCO Bugfixes Critical Vulnerability

Cisco addressed critical and high severity pre-auth security vulnerabilities that impact multiple Small Business VPN routers. The two security flaws tracked as CVE-2021-1609 (rated 9.8/10) and CVE-2021-1602 (8.2/10) were found…