Advertisement · 728 × 90
#
Hashtag
#NationStateHackers
Advertisement · 728 × 90
Preview
Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack screenshots from web browsers read more about Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack

Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack reconbee.com/nation-state...

#nationstatehackers #airstalkmalware #malwareattack #malwarecampaign #malwaredistribution #supplychainattack

0 0 0 0
Post image

Cyber war is no longer one-dimensional. State actors, criminal hackers, and shadow proxies now strike together.

Explore how multi-vector cyber threats are reshaping global defence:

🔗 defconwarningsystem.com/2025/07/02/m...

#CyberSecurity #CyberWarfare #NationStateHackers #DEFCON #Geopolitics

0 0 0 0
Preview
ConnectWise breached in cyberattack linked to nation-state hackers IT management solutions to IT departments read more about ConnectWise breached in cyberattack linked to nation-state hackers

ConnectWise breached in cyberattack linked to nation-state hackers reconbee.com/connectwise-...

#connectwise #breach #databreach #nationstatehackers #cybersecurity #cyberattack

0 0 0 0
Preview
Windows Shortcut Vulnerability Exploited by 11 State-Sponsored Outfits  Since 2017, at least 11 state-sponsored threat groups have actively exploited a Microsoft zero-day issue that allows for abuse of Windows shortcut files to steal data and commit cyber espionage against organisations across multiple industries.  Threat analysts from Trend Micro's Trend Zero Day Initiative (ZDI) discovered roughly 1,000 malicious.lnk files that exploited the flaw, known as ZDI-CAN-25373, which allowed cyber criminals to execute concealed malicious commands on a victim's PC via customised shortcut files. “By exploiting this vulnerability, an attacker can prepare a malicious .lnk file for delivery to a victim,” researchers at Trend Micro noted. “Upon examining the file using the Windows-provided user interface, the victim will not be able to tell that the file contains any malicious content.” The malicious files delivered by cybercriminals include a variety of payloads, including the Lumma infostealer and the Remcos remote access Trojan (RAT), which expose organisations to data theft and cyber espionage.  State-sponsored outfits from North Korea, Iran, Russia, and China, as well as non-state actors, are among those behind the flaw attacks, which have affected organisations in the government, financial, telecommunications, military, and energy sectors across North America, Europe, Asia, South America, and Australia.  Additionally, 45% of attacks were carried out by North Korean players, with Iran, Russia, and China each accounting for approximately 18%. Some of the groups listed as attackers are Evil Corp, Kimsuky, Bitter, and Mustang Panda, among others. According to Trend Micro, Microsoft has not fixed the flaw despite receiving a proof-of-concept exploit through Trend ZDI's bug bounty program. Trend Micro did not react to a follow-up request for comment on their flaw detection and submission timeline. Microsoft's position remains that it will not be fixing the vulnerability described by Trend Micro at this time because it "does not meet the bar for immediate servicing under our severity classification guidelines," though the company "will consider addressing it in a future feature release," according to an email from a Microsoft spokesperson. Meanwhile, Microsoft Defender can detect and block threat behaviour, as detailed by Trend Micro, and Microsoft's Windows Smart App Control prevents malicious files from being downloaded from the internet. Furthermore, Windows recognises shortcut (.lnk) files as potentially malicious file types, and the system will automatically display a warning if a user attempts to download one.

Windows Shortcut Vulnerability Exploited by 11 State-Sponsored Outfits #MaliciousFiles #nationstatehackers #ThreatLandscape

0 0 0 0
Preview
MITRE Corporation Breached by Nation-State Hackers Exploiting Ivanti Flaws MITRE, a top cybersecurity firm, breached by a nation-state. Zero-days and session hijacking were the weapons.

MITRE Corporation Breached by Nation-State Hackers Exploiting Ivanti Flaws
thehackernews.com/2024/04/mitr...
#Infosec #Security #Cybersecurity #CeptBiro #MITRECorporation #Breached #NationStateHackers #IvantiFlaws

0 0 0 0