
New Gootloader Variant “GootBot” Changes the Game in Malware Tactics...
New Gootloader Variant “GootBot” Changes the Game in Malware Tactics Researchers recently identified a fresh Gootloader malware variant known as “GootBot,” used in SEO poisoning attacks. T...

Japanese IT Breach, CPanel Auctions, LinkedIn Data Leak
Japanese IT Breach, CPanel Auctions, LinkedIn Data Leak The SOCRadar Dark Web Team has meticulously documented a series of disturbing transactions within the obscured recesses of the dark web. These i...

Dark Peep #4: Ransomware For Sale
Dark Peep #4: Ransomware For Sale October finally ended; we hope the cybersecurity awareness month was helpful for everyone. In this issue of Dark Peep, we will discuss the interesting events that cau...

The Five Families: Hacker Collaboration Redefining the Game
The Five Families: Hacker Collaboration Redefining the Game At the end of the Summer of 2023, five hacker groups, including ThreatSec, GhostSec, Stormous, Blackforums, and SiegedSec, have collectively...

Critical RCE Vulnerability in Apache ActiveMQ Is Targeted by HelloKitt...
Critical RCE Vulnerability in Apache ActiveMQ Is Targeted by HelloKitty Ransomware (CVE-2023-46604) [Update] December 19, 2023: “Ongoing Exploitation of Apache ActiveMQ Vulnerability: Threat Actors L...

Counter-Ransomware Initiative: A United Front Against Ransomware
Counter-Ransomware Initiative: A United Front Against Ransomware [Update] November 9, 2023: Boeing was once again leaked on the victim site of the LockBit*** [Update] November 3, 2023: LockBit lists B...

Atlassian CISO Announced: Improper Authorization Vulnerability Detecte...
Atlassian CISO Announced: Improper Authorization Vulnerability Detected on Confluence Data Center and Server (CVE-2023-22518) [Update] April 18, 2023: “Cerber Ransomware Exploits CVE-2023-22518 in Con...

Dark Opinion: Doing Things Under the Rose, Proxy Data Recovery Compani...
Dark Opinion: Doing Things Under the Rose, Proxy Data Recovery Companies for Ransomware Negotiation During the pandemic, a lot of untrue stories spread around. This happened a lot after people started...

Trick or Threat: Diving into Spooky Techniques of Ransomware Groups
Trick or Threat: Diving into Spooky Techniques of Ransomware Groups October, a month of chilling winds, pumpkin spice, and haunting tales, also marks Cybersecurity Awareness Month. An annual campaign,...

New Bulletin by CISA on Rising Vulnerabilities: Apache, BIG-IP, IBM, V...
New Bulletin by CISA on Rising Vulnerabilities: Apache, BIG-IP, IBM, VMware, WordPress, and More The Cybersecurity and Infrastructure Security Agency (CISA) released a summary of new vulnerabilities w...

How to Utilize Attack Surface Management and Vulnerability Intelligenc...
How to Utilize Attack Surface Management and Vulnerability Intelligence for ‘Vulnerability Mapping’ The concept of vulnerability is a persistent shadow that haunts the digital realm; it is an element ...

British and Mexican Companies’ Access Sales, Airline Breach, US Citize...
British and Mexican Companies’ Access Sales, Airline Breach, US Citizen Data Leak The relentless pace of dark web threats persists. The SOCRadar Dark Web Team reveals a fresh wave of illicit activitie...

SIM Swappers Collaborate with Ransomware Gangs
SIM Swappers Collaborate with Ransomware Gangs In today’s digital world, the landscape of cyber threats is changing rapidly. One of the latest developments in this arena is the alliance between ...

High-Severity VMware Tools and vCenter Server Vulnerabilities Addresse...
High-Severity VMware Tools and vCenter Server Vulnerabilities Addressed with Recent Patches (CVE-2023-34057, CVE-2023-34058, CVE-2023-34048) [Update] January 23, 2024: ”VMware Confirms Active Exploit...

Critical Vulnerability in F5 BIG-IP Configuration Utility Allows Reque...
Critical Vulnerability in F5 BIG-IP Configuration Utility Allows Request Smuggling, Leads to RCE: CVE-2023-46747 [Update] November 1, 2023: See the subheading: “F5 Reports Active Exploitation of CVE-2...

KillNet Announces Launch of A New DDoS Service
KillNet Announces Launch of A New DDoS Service During the cyberwarfare caused by the Israel-Palestine conflict and Russia’s invasion of Ukraine in cybersecurity, it’s paramount to stay upd...

A malicious code found: New Magecart Campaign That’s Abusing 404 Pages...
A malicious code found: New Magecart Campaign That’s Abusing 404 Pages Magecart is a term used to describe a type of cyberattack that targets online retailers by injecting malicious code into their we...

Dark Peep #3: Gone Phishing, We’ll Be Back!
Dark Peep #3: Gone Phishing, We’ll Be Back! It is clear that the world of the dark web will never be still, but the shape and size of the waves can change, and sometimes, there are still areas in this...

On Threat Actors' Radar: PoC Exploits for VMware Aria Operations Vulne...
On Threat Actors’ Radar: PoC Exploits for VMware Aria Operations Vulnerability (CVE-2023-34051), and More Newly discovered vulnerabilities are a constant source of concern for the cybersecurity ...

Security Breach in Okta Support System Continues Sparking Concerns: Cl...
Security Breach in Okta Support System Continues Sparking Concerns: Cloudflare and 1Password Share Disclosures [Update] November 29, 2023: A recent audit uncovered a broader data theft scope in the Oc...