Anyrun's TI Lookup now offers Suricata Search.
🔎 User can find active network threats using details of Suricata detection rules
Rule parameters can be combined with extra indicators like domains and IPs for more specific results
More ⬇️
https://go.thn.li/malware-analysis
🔎 User can find active network threats using details of Suricata detection rules
Rule parameters can be combined with extra indicators like domains and IPs for more specific results
More ⬇️
https://go.thn.li/malware-analysis
ANY.RUN's Cybersecurity Blog
Search for Network Threats by Suricata in TI Lookup - ANY.RUN's Cybersecurity Blog
See how you can search for network threats using Suricata rule details in ANY.RUN's Threat Intelligence Lookup.
🔥12👍6⚡2
Who’s using genAI tools in your organization? Find out in minutes with Nudge Security. Start a free trial and discover every SaaS account ever created by anyone in your org, including generative AI tools.
Read: https://thn.news/ai-risks
Read: https://thn.news/ai-risks
Nudgesecurity
Discover & Secure Generative AI Usage with Nudge Security
Balance the productivity benefits of generative AI with security oversight by programmatically discovering the tools your employees are using.
🤔10👍6⚡3🤯2🔥1
⚠️ GitLab has patched a critical vulnerability (CVE-2024-6385) with a CVSS score of 9.6, allowing attackers to run pipeline jobs as any user.
Also, Citrix updates for CVE-2024-6235, & Broadcom addresses flaws in VMware Cloud Director (CVE-2024-22277) & Aria Automation (CVE-2024-22280).
Learn more: https://thehackernews.com/2024/07/gitlab-patches-critical-flaw-allowing.html
Don't wait – secure your development environment now.
Also, Citrix updates for CVE-2024-6235, & Broadcom addresses flaws in VMware Cloud Director (CVE-2024-22277) & Aria Automation (CVE-2024-22280).
Learn more: https://thehackernews.com/2024/07/gitlab-patches-critical-flaw-allowing.html
Don't wait – secure your development environment now.
👍19⚡8
A recently disclosed security flaw in PHP (CVE-2024-4577) is being exploited by multiple threat actors to deploy remote access trojans, cryptocurrency miners, and DDoS botnets.
Learn more https://thehackernews.com/2024/07/php-vulnerability-exploited-to-spread.html
Learn more https://thehackernews.com/2024/07/php-vulnerability-exploited-to-spread.html
⚡9🤯8👍4🔥4
⚠️ A new phishing campaign is spreading Poco RAT malware among Spanish-speaking sectors, including utilities and manufacturing.
Details here: https://thehackernews.com/2024/07/new-poco-rat-targets-spanish-speaking.html
🔍 Analysts note the malware's unique focus on anti-analysis and C2 activities, making it harder to detect.
Details here: https://thehackernews.com/2024/07/new-poco-rat-targets-spanish-speaking.html
🔍 Analysts note the malware's unique focus on anti-analysis and C2 activities, making it harder to detect.
🔥9👍8🤔4
APT41 is suspected of using an advanced version of StealthVector, called DodgeBox, to deliver a new backdoor named MoonWalk.
Understanding the advanced evasion techniques used by DodgeBox is essential for maintaining robust cybersecurity.
Read: https://thehackernews.com/2024/07/chinese-apt41-upgrades-malware-arsenal.html
Understanding the advanced evasion techniques used by DodgeBox is essential for maintaining robust cybersecurity.
Read: https://thehackernews.com/2024/07/chinese-apt41-upgrades-malware-arsenal.html
👍8🤔5⚡4🔥2
🚨 Developers, be cautious! New wave of malicious packages found in NuGet!
Hackers are using IL Weaving to inject malicious code into legitimate binaries, embedding remote access trojans in popular packages.
Read: https://thehackernews.com/2024/07/60-new-malicious-packages-uncovered-in.html
Hackers are using IL Weaving to inject malicious code into legitimate binaries, embedding remote access trojans in popular packages.
Read: https://thehackernews.com/2024/07/60-new-malicious-packages-uncovered-in.html
😱10⚡3👍3👏2🤯2
⚠️ Urgent: Palo Alto Networks has rolled out critical security updates to fix five vulnerabilities, including CVE-2024-5910, a severe authentication bypass flaw (CVSS 9.3).
Learn more: https://thehackernews.com/2024/07/palo-alto-networks-patches-critical.html
These updates affect multiple PAN-OS versions and Prisma Access.
Learn more: https://thehackernews.com/2024/07/palo-alto-networks-patches-critical.html
These updates affect multiple PAN-OS versions and Prisma Access.
🔥8🤯5👍4⚡3🤔2
As cybercriminals target smaller firms, affordable Privileged Access Management (PAM) solutions are essential for safeguarding sensitive data.
PAM reduces insider threats and ensures compliance with regulations like GDPR and HIPAA.
Learn more: https://thehackernews.com/2024/07/streamlined-security-solutions-pam-for.html
PAM reduces insider threats and ensures compliance with regulations like GDPR and HIPAA.
Learn more: https://thehackernews.com/2024/07/streamlined-security-solutions-pam-for.html
👍16🤔4⚡3🔥2
Alert: U.S. authorities disrupt major Russian influence operation using AI. The campaign targeted multiple countries and exploited social media platform vulnerabilities.
Learn more: https://thehackernews.com/2024/07/us-seizes-domains-used-by-ai-powered.html
Learn more: https://thehackernews.com/2024/07/us-seizes-domains-used-by-ai-powered.html
🔥18👍8😁8🤯6😱4🤔3⚡2
AT&T confirms massive data breach affecting "nearly all" wireless customers. This impacts millions, potentially exposing call records and location data.
Learn more: https://thehackernews.com/2024/07/at-confirms-data-breach-affecting.html
This data could be a goldmine for cybercriminals planning targeted attacks.
Learn more: https://thehackernews.com/2024/07/at-confirms-data-breach-affecting.html
This data could be a goldmine for cybercriminals planning targeted attacks.
👍15🤯13😁12🔥5👏1
🔥 Compromised credentials are now the #1 attack vector in 2024!
Every set of credentials is a potential entry point for attackers. This makes securing them more important than ever.
Learn more in this exclusive Expert-led webinar: https://thehackernews.com/2024/07/ever-wonder-how-hackers-really-steal.html
Every set of credentials is a potential entry point for attackers. This makes securing them more important than ever.
Learn more in this exclusive Expert-led webinar: https://thehackernews.com/2024/07/ever-wonder-how-hackers-really-steal.html
👍22🤔9⚡8😁4
A new version of HardBit ransomware has emerged with advanced obfuscation techniques to evade analysis efforts and unique extortion tactics. Learn about its evolving threat landscape.
Learn more: https://thehackernews.com/2024/07/new-hardbit-ransomware-40-uses.html
Learn more: https://thehackernews.com/2024/07/new-hardbit-ransomware-40-uses.html
👍12⚡7👏1🤔1
Singapore banks will soon replace OTPs with digital tokens for online banking authentication to combat phishing attacks, as announced by MAS and ABS.
Learn more: https://thehackernews.com/2024/07/singapore-banks-to-phase-out-otps-for.html
This move significantly reduces the risk of credential theft and account hijacking.
Learn more: https://thehackernews.com/2024/07/singapore-banks-to-phase-out-otps-for.html
This move significantly reduces the risk of credential theft and account hijacking.
👏21👍8⚡6😁5🤔2
⚠️ CRYSTALRAY threat actor has ramped up operations, infecting over 1,500 victims using open-source tools like SSH-Snake.
Learn more: https://thehackernews.com/2024/07/crystalray-hackers-infect-over-1500.html
Experts warn that the attackers are leveraging legitimate tools, making detection challenging.
Learn more: https://thehackernews.com/2024/07/crystalray-hackers-infect-over-1500.html
Experts warn that the attackers are leveraging legitimate tools, making detection challenging.
🔥7⚡3👍3😱1
📢 Upcoming WEBINAR on Building Effective Security Champion Programs.
Learn from industry leaders about creating a culture of collaboration & trust within your development teams.
Reserve your spot to watch this: https://thehacker.news/developer-security-champion
Learn from industry leaders about creating a culture of collaboration & trust within your development teams.
Reserve your spot to watch this: https://thehacker.news/developer-security-champion
thehacker.news
Turn Developers into Allies: The Power of Security Champion Programs
Transform Your Team: Learn How Security Champions Turn Developers into Security Advocates
👍9🤔4
⚠️ Imagine your company's data exposed for $10 or less. That's the reality with infostealer #malware.
This alarming trend jeopardizes everything from bank details to internal credentials.
Learn how to protect your data ⬇️ https://thehackernews.com/2024/07/10000-victims-day-infostealer-garden-of.html
This alarming trend jeopardizes everything from bank details to internal credentials.
Learn how to protect your data ⬇️ https://thehackernews.com/2024/07/10000-victims-day-infostealer-garden-of.html
👍7🤔3👏2
🔥 A leaked GitHub token could have granted admin access to critical repositories of the Python language, PyPI, and the PSF.
This incident could have led to a massive supply chain attack.
Learn more: https://thehackernews.com/2024/07/github-token-leak-exposes-pythons-core.html
This incident could have led to a massive supply chain attack.
Learn more: https://thehackernews.com/2024/07/github-token-leak-exposes-pythons-core.html
😱21👍5👏3
🚨 CISA Adds GeoServer Flaw to KEV Catalog!
Critical RCE vulnerability CVE-2024-36401 is actively exploited, affecting all default GeoServer installations.
Read: https://thehackernews.com/2024/07/cisa-warns-of-actively-exploited-rce.html
Your geospatial data & systems are at severe risk of unauthorized access & manipulation.
Critical RCE vulnerability CVE-2024-36401 is actively exploited, affecting all default GeoServer installations.
Read: https://thehackernews.com/2024/07/cisa-warns-of-actively-exploited-rce.html
Your geospatial data & systems are at severe risk of unauthorized access & manipulation.
🔥9👍3🤔1
Kaspersky, Russian cybersecurity giant, to exit U.S. market by July 20, 2024, following Commerce Department ban citing national security risks.
Read details: https://thehackernews.com/2024/07/kaspersky-exits-us-market-following.html
This move impacts thousands of U.S. businesses and individuals using Kaspersky products.
Read details: https://thehackernews.com/2024/07/kaspersky-exits-us-market-following.html
This move impacts thousands of U.S. businesses and individuals using Kaspersky products.
🤔18👏17😁6👍4🔥2🤯1
⚡ Alert: Void Banshee is actively exploiting a zero-day flaw in Microsoft MHTML to spread the Atlantida info-stealer.
CVE-2024-38112 threatens sensitive data across numerous platforms.
Learn about the attack chain: https://thehackernews.com/2024/07/void-banshee-apt-exploits-microsoft.html
CVE-2024-38112 threatens sensitive data across numerous platforms.
Learn about the attack chain: https://thehackernews.com/2024/07/void-banshee-apt-exploits-microsoft.html
🔥9👍5