Drupal core – Moderately critical – Information Disclosure – SA-CORE-2022-012
Project: Drupal core Date: 2022-July-20 Security risk: Moderately critical 13∕25 AC:None/A:None/CI:Some/II:None/E:Theoretical/TD:Uncommon Vulnerability: Information Disclosure Description: In some situations, the Image module does not correctly check...
Russia Creates Malware False-Flag App
The Russian hacking group Turla released an Android app that seems to aid Ukrainian hackers in their attacks against Russian networks. It’s actually malware, and...
Romanian Man Accused of Distributing Gozi Virus Extradited to US
First discovered in 2007, the Gozi virus was able to go undetected as it stole bank account information from computers Read More
Threat Integration: Lessons of Indicator & Incident Exchange
Threat integration of a shared IoC is difficult when the responsibility is distributed out to organizations to create defensive actions. Read More
Anti-Russian denial-of-service app actually infects pro-Ukrainian activists
An app which purported to launch distributed denial-of-service (DDoS) attacks against the internet infrastructure of Russia, was in reality secretly installing malware on to the...
How CIS Hardened Images Can Help with Cloud Security
Hardening an OS in the cloud can be a tedious process without hardened virtual images. Learn how CIS's Hardened Images can help with cloud security....
Russian Adversaries Target DropBox and Google Drive in New Campaign
The group Cloaked Ursula is increasingly using popular online storage services because it makes attacks difficult to detect and prevent Read More
Perception Point launches managed security service to help eliminate web browser threats
Perception Point has announced the launch of a new managed security service designed to eliminate web browser threats to organizations. According to the firm, Perception...
Brazen, Unsophisticated and Illogical: Understanding the LAPSUS$ Extortion Group
Having gained the industry’s attention in the first months of 2022, the LAPSUS$ extortion group has largely gone quiet. What can we learn from this...
Everything to know about SaaS data security
This blog was written by an independent guest blogger. Software-as-a-service (SaaS) is becoming the dominant way enterprises access digital tools. While this delivery method has...
