Skip to main content

Topic

Perspectives

CTI Roundup: Remcos RAT Phishing Attacks, New Meduza Stealer Found on Dark Web
Jan 10, 2024

CISA adds two bugs to the KEV catalog, UAC-0050 distributes Remcos RAT with phishing tactics, and an updated version of Meduza Stealer launches on the dark web.

CTI Roundup – top 2023 stories: The latest on Chae$ 4, 3AM ransomware, DarkGate, and Andariel
Jan 3, 2024

Tanium’s Cyber Threat Intelligence (CTI) team looks at some of the top cybersecurity developments from 2023 that will continue to pose threats in 2024.

CTI Roundup: TA4557, OAuth Cryptomining, and the China-based KEYPLUG backdoor
Dec 21, 2023

TA4557 targets recruiters via email, threat actors use OAuth apps to automate BEC and cryptomining attacks, and researchers discover Sandman APT’s connection to the China-based KEYPLUG backdoor.

A photo of a computer chip overlaid with human figures facing in different directions and bathed in a blue light.
Dec 20, 2023

As enterprises deploy generative AI to boost productivity, they need to be prepared for the associated risks. We checked with experts to outline the ways AI tech is vulnerable. SBOMs and other defense strategies will help, but getting this right this may take some trial and error.

An illustration of a man seen in blue silhouette holding over his head a large red speech bubble, which is punched with holes.
Dec 15, 2023

Deepfakes are harder to spot thanks to AI, making it easier to tarnish your brand. But old-school cybersecurity tactics can thwart these new threats.

CTI Roundup: Russian threat actor APT28 exploits Outlook vulnerability
Dec 13, 2023

APT28 exploits a critical Outlook vulnerability, QR phishing campaigns grow more complex, and an SQL brute force attack results in BlueSky ransomware.

Photo of a row of palm trees, with the downtown Los Angeles skyline in the distance.
Dec 8, 2023

The CISO for LA County, who oversees 100,000 employees, shares tips on cross-agency info-sharing, ongoing audits, and aggressive awareness training.

Image of a blue cartoon speech bubble wrapped in a web of red threads held down with pushpins.
Dec 6, 2023

Bad actors are using inaccuracies, lies, and sophisticated deepfakes to target organizations. Here’s why enterprises—big and small—must take it seriously.

Tanium–Blog-2.3.22-Naveen Goela’s Mission to Mature Security with Science
Dec 6, 2023

North Korean hackers pose as job seekers and recruiters, the Telekopye Telegram bot enables large-scale phishing scams, and DPRK-aligned threat actors target macOS in two campaigns.

CTI Roundup: AlphaLock, a New Russian Hacking Group is Discovered
Nov 21, 2023

Researchers discover a new Russian hacking group, Rhysida ransomware threatens multiple sectors, and a new campaign targets public Docker Engine APIs.

CTI Roundup: ChatGPT-Powered Infostealer Targets Cloud Platforms
Nov 16, 2023

Google Cloud releases its Q3 Threat Horizons report, BlueNoroff hacks macOS machines with ObjCshellz malware, and a ChatGPT-powered infostealer targets cloud platforms.

Photo of an oblong bright blue boardroom table surrounded by chairs
Nov 15, 2023

As companies rapidly deploy AI technology, they’ll need a dedicated person in the C-suite to oversee those efforts. If that wasn’t clear before Biden’s executive order, it will be now.