5 Years Old EOL ZYXL Flaw Exploited, TripAdvisor Becomes New Attack Vector, LOLEKHOSTED Taken Down - Find More
WEEKLY THREAT DIGEST

5 Years Old EOL ZYXL Flaw Exploited, TripAdvisor Becomes New Attack Vector, LOLEKHOSTED Taken Down - Find More

We are yet again back with this week's new edition of Threat Digest, bringing you some of the most intrusive bytes across the threat landscape curated by our team at SecureBlink Threat Intel Lab.



Five-Year-Old Flaw in EoL Zyxel Router Exploited by Gafgyt Malware.?

No alt text provided for this image
GAFGYT


Gafgyt botnet's chosen battlefield is none other than the CVE-2017-18368 vulnerability, an unauthenticated command injection flaw in the Zyxel router's Remote System Log forwarding function.?


Details


Tripadvisor Complaint Email: A Vector for Knight Ransomware.

No alt text provided for this image
TripAdvisor


Knight ransomware hitches a ride on seemingly innocuous TripAdvisor complaint emails. A vigilant eye from Sophos researcher Felix unveils a spam campaign cloaked in deception. Cloaked as TripAdvisor complaints, these emails harbor ZIP file attachments bearing intriguing names such as 'TripAdvisorComplaint.zip.'?


Details?


Lapsus$ Hackers Elevate SIM-Swapping Attacks to Unprecedented Heights.?

No alt text provided for this image
LAPSUS$


An extensive review of Lapsus$ operations followed a trail of incidents marked by proprietary data leaks. This infamous group left its mark on industry titans, including T-Mobile, Samsung, Cisco, and more. A motley crew primarily composed of teenagers scattered across the U.K. and Brazil, Lapsus$ operated between 2021 and 2022.


Details?


LOLEKHosted: Unveiling a Ransomware Nexus - Dark Secrets Exposed.?

No alt text provided for this image
LOLEKHOSTED


Law enforcement agencies of Poland & the United States joined forces to dismantle a nefarious cybercriminal haven known as LOLEKHosted. This covert bulletproof hosting provider had been allegedly facilitating a string of heinous cybercrimes, with a primary focus on aiding the notorious Netwalker ransomware gang.


Details


40 Million UK Voters' Data Exposed: Electoral Commission Cyberattack.?

No alt text provided for this image
UK Electroral Commission


In a staggering security breach, the Electoral Commission of the United Kingdom fell prey to a highly complex cyberattack that exposed the personal data of approximately 40 million UK voters.?


Details


Cl0p Ransomware's Torrent Data Leak: Disclosing MOVEit's Massive Breach!

No alt text provided for this image
MOVEit


MOVEit, the trusted file transfer platform relied upon by governments, financial institutions, and various public and private sector entities globally, became the epicenter of a cyber catastrophe in late May 2023.


Details





That's a wrap for this week's Threat Digest until next time with a brand new edition.

Experience the New Dimension of Application Security with Threatspy

Stay tuned for more insightful updates on #cybersecurity.

Have a secure weekend!


要查看或添加评论,请登录

Secure Blink的更多文章

社区洞察

其他会员也浏览了