Tag: Vulnerability Assessment

  • Mimic: New Malware exploits the ‘Everything’ search function

    Mimic: New Malware exploits the ‘Everything’ search function

    Cybersecurity website researchers discovered Mimic, a new ransomware strain. This malware searches for files targeted for encryption using the APIs of Windows’ ‘Everything’ file search tool. Furthermore, the virus was discovered in June 2022 by online security website researchers. Seemingly it targets mostly English and Russian-speaking people. Some Researchers claim that some of Mimic’s code is identical…

  • Cybersecurity: Are You Ready for the Top SaaS Threats

    Cybersecurity: Are You Ready for the Top SaaS Threats

    This year, cybercriminals will be busier than ever. Secure your systems and data by concentrating on these areas to safeguard your environment and assure success in 2023.  Ensure the cybersecurity of your company is only in the news when you WANT it to be. 1 — Weaknesses in web apps Web applications are fundamental to…

  • Scattered Spider hackers used outdated Intel drivers

    Scattered Spider hackers used outdated Intel drivers

    Scattered Spider a financially driven threat actor, attempted to distribute Intel Ethernet diagnostics drivers. This was done in a BYOVD assault to avoid detection by EDR security solutions. The BYOVD method threat actors use a kernel-mode driver known to be vulnerable to vulnerabilities. Hackers use it as part of their attacks to get greater control…

  • Azure will defend SMBs against DDoS campaigns

    Azure will defend SMBs against DDoS campaigns

    Microsoft has announced that a new SKU for Azure’s DDoS Protection solution, which it claims is particularly targeted at SMBs, is now available in public preview. Microsoft provides a lower-cost solution for small businesses to combat DDoS campaigns. The latest SKU, dubbed “IP Protection,” is designed to guard against L3/L4 DDoS assaults with “always-on monitoring…

  • Microsoft SQL servers faced  malware

    Microsoft SQL servers faced malware

    Microsoft SQL servers are not free from malware. There has been found a new malware named Maggie which targets Microsoft SQL server security researchers. Maggie runs with SQL queries through which it commands and interacts with files. This way it extends brute-forcing administrator logins to another Microsoft server as it gets into the server network…

  • Microsoft’s Patch Tuesday for April addresses 2 zero-day vulnerabilities

    Microsoft’s Patch Tuesday for April addresses 2 zero-day vulnerabilities

    Microsoft’s huge April Patch Tuesday contains one issue that has already been openly disclosed and one that has already been used in the wild.  Microsoft, known for products like Microsoft 365 corrected over 100 issues, including Ten serious RCE vulnerabilities.  But first, CVE-2022-24521, which was disclosed to Microsoft by U.S. National Security Agency and security…