Category: Threat Intel Reports
-
Nuclei flaw lets malicious templates bypass signature verification
![Nuclei](https://www.bleepstatic.com/content/hl-images/2025/01/04/nuclei-header.jpg)A now-fixed vulnerability in the open-source vulnerability scanner Nuclei could potentially allow attackers to bypass signature verification while sneaking malicious…
-
US Treasury Department sanctioned Chinese cybersecurity firm linked to Flax Typhoon APT
The U.S. Treasury Department sanctioned Chinese cybersecurity firm Integrity Tech for its involvement in attacks attributed to the Flax Typhoon…
-
Malicious npm packages target Ethereum developers
Malicious npm packages target Ethereum developers, impersonating Hardhat plugins to steal private keys and sensitive data.————————————————————————————————————————–[Hardhat](https://hardhat.org/), by the [Nomic Foundation](https://nomic.foundation/),…
-
2025-01-04: Four days of scans and probes and web traffic hitting my web server
2025-01-04 (SATURDAY): FOUR DAYS OF SCANS AND PROBES AND WEB TRAFFIC HITTING MY WEB SERVER——————————————————————————————NOTES:* Zip files are password-protected. Of…
-
Beware of phishing attacks by APTC01 (Poison Ivy)
APT-C-01, known as Poison Ivy, is a persistent threat group targeting defense, government, technology, and education sectors since 2007. They…
-
Hacked on Christmas, DEphoto starts notifying customers, only to be attacked again
The threat actor known as 0mid16B contacted DataBreaches this morning to alert this site to a breach involving a U.K.…
-
Machine Learning in XDR: A Cybersecurity Breakthrough
Report: Digital Espionage and Innovation: Unpacking AgentTesla [Download Now](https://fidelissecurity.com/resource/report/agent-tesla-malware-analysis/) * [Threat Geek Blog](https://fidelissecurity.com/threatgeek/)* [Services -& Support](https://fidelissecurity.com/service-support/) * [Solutions](#) * [Fidelis…
-
Eight things that should not have happened last year, but did
#### [Bootnotes](/offbeat/bootnotes/)**26** Eight things that should not have happened last year, but did=============================================================**26** 2024’s Tech Fail Roll Of Dishonor———————————[Rupert Goodwins](/Author/Rupert-Goodwins…
-
U.S. Treasury sanctions Russian and Iranian entities for interfering in the presidential election
The U.S. Treasury sanctioned entities for disinformation tied to Russian and Iranian intelligence before the 2024 presidential elections.—————————————————————————————————————————————–The U.S. Treasury…
-
Iranian and Russian Entities Sanctioned for Election Interference Using AI and Cyber Tactics
![Election Interference Using AI and Cyber Tactics](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEixDIFeZ9czvwbP2XTK6ufHxNymko-gdguaoOT1iyD2PXzryozCtNiUO-gL50HU28S34V1x_VYNJcP6WreDt5nSPrMOE4zMk1Wy8DcL8c3HMp_u8vhNWCpaz1ZpV97Muqb1JnZOEuWxaLLY3rqC-OOhKz73CV9F4tKYbnoKbvX4VugJBDCI0wAvy-W19HO5/s728-rw-e365/election.png ‘Election Interference Using AI and Cyber Tactics’)The U.S. Treasury Department’s Office of Foreign…