Topic
Perspectives

CTI Roundup: Remcos RAT Phishing Attacks, New Meduza Stealer Found on Dark Web
CISA adds two bugs to the KEV catalog, UAC-0050 distributes Remcos RAT with phishing tactics, and an updated version of Meduza Stealer launches on the dark web.

CTI Roundup – top 2023 stories: The latest on Chae$ 4, 3AM ransomware, DarkGate, and Andariel
Tanium’s Cyber Threat Intelligence (CTI) team looks at some of the top cybersecurity developments from 2023 that will continue to pose threats in 2024.

CTI Roundup: TA4557, OAuth Cryptomining, and the China-based KEYPLUG backdoor
TA4557 targets recruiters via email, threat actors use OAuth apps to automate BEC and cryptomining attacks, and researchers discover Sandman APT’s connection to the China-based KEYPLUG backdoor.

The 3 Biggest GenAI Threats (Plus 1 Other Risk) and How to Fend Them Off
As enterprises deploy generative AI to boost productivity, they need to be prepared for the associated risks. We checked with experts to outline the ways AI tech is vulnerable. SBOMs and other defense strategies will help, but getting this right this may take some trial and error.

Misinformation / Disinformation, Part 2 – Bringing Old-School Cybersecurity to a New Fight
Deepfakes are harder to spot thanks to AI, making it easier to tarnish your brand. But old-school cybersecurity tactics can thwart these new threats.

CTI Roundup: Russian threat actor APT28 exploits Outlook vulnerability
APT28 exploits a critical Outlook vulnerability, QR phishing campaigns grow more complex, and an SQL brute force attack results in BlueSky ransomware.

CISO Success Story: How LA County Trains (and Retrains) Workers to Fight Phishing
The CISO for LA County, who oversees 100,000 employees, shares tips on cross-agency info-sharing, ongoing audits, and aggressive awareness training.

Misinformation / Disinformation, Part 1 – The Coming Crisis and Enterprises Most at Risk
Bad actors are using inaccuracies, lies, and sophisticated deepfakes to target organizations. Here’s why enterprises—big and small—must take it seriously.

CTI Roundup: Multiple Cyber Threats from North Korean Groups and a Telegram Bot Phishing Scam
North Korean hackers pose as job seekers and recruiters, the Telekopye Telegram bot enables large-scale phishing scams, and DPRK-aligned threat actors target macOS in two campaigns.

CTI Roundup: AlphaLock, a New Russian Hacking Group is Discovered
Researchers discover a new Russian hacking group, Rhysida ransomware threatens multiple sectors, and a new campaign targets public Docker Engine APIs.

CTI Roundup: ChatGPT-Powered Infostealer Targets Cloud Platforms
Google Cloud releases its Q3 Threat Horizons report, BlueNoroff hacks macOS machines with ObjCshellz malware, and a ChatGPT-powered infostealer targets cloud platforms.

The Chief AI Officer Is Here. It’s Time to Make Room in the C-Suite
As companies rapidly deploy AI technology, they’ll need a dedicated person in the C-suite to oversee those efforts. If that wasn’t clear before Biden’s executive order, it will be now.