Content has been added to your Folio

Research, News, and Perspectives

Add Filters
Filter by:
CVE-2023-46604 (Apache ActiveMQ) Exploited to Infect Systems With Cryptominers and Rootkits
Exploits & Vulnerabilities

CVE-2023-46604 (Apache ActiveMQ) Exploited to Infect Systems With Cryptominers and Rootkits

We uncovered the active exploitation of the Apache ActiveMQ vulnerability CVE-2023-46604 to download and infect Linux systems with the Kinsing malware (also known as h2miner) and cryptocurrency miner.

November 20, 2023
ICS OT

Opening Critical Infrastructure: The Current State of Open RAN Security

The Open Radio Access Network (ORAN) architecture provides standardized interfaces and protocols to previously closed systems. However, our research on ORAN demonstrates the potential threat posed by malicious xApps that are capable of compromising the entire Ran Intelligent Controller (RIC) subsystem.

Research Dec 01, 2023

Save to Folio

Research Dec 01, 2023

Save to Folio

Cyber Threats

Cloud Security Predictions at AWS re:Invent 2023

Heading to AWS re:Invent 2023? Don’t miss out on our talk with Melinda Marks, ESG Practice Director for Cybersecurity, about cloud detection and response (CDR) and what’s trending in cloud security.

Annual Predictions Nov 27, 2023

Save to Folio

Annual Predictions Nov 27, 2023

Save to Folio

Cyber Threats

ParaSiteSnatcher: How Malicious Chrome Extensions Target Brazil

We detail the modular framework of malicious Chrome extensions that consist of various highly obfuscated components that leverage Google Chrome API to monitor, intercept, and exfiltrate victim data.

Research Nov 23, 2023

Save to Folio

Research Nov 23, 2023

Save to Folio

Cyber Threats

Exploring Weaknesses in Private 5G Networks

Dive into the world of private 5G networks and learn about a critical security vulnerability that could expose IoT devices to attacks from external networks.

Nov 22, 2023

Save to Folio

Nov 22, 2023

Save to Folio

Ransomware

ALPHV/BlackCat Take Extortion Public

Learn more about ALPHV filing a complaint with the Security and Exchange Commission (SEC) against their victim, which appears to be an attempt to influence MeridianLink to pay the ransom sooner than later.

Expert Perspective Nov 17, 2023

Save to Folio

Expert Perspective Nov 17, 2023

Save to Folio

Artificial Intelligence (AI)

A Closer Look at ChatGPT's Role in Automated Malware Creation

This blog entry explores the effectiveness of ChatGPT's safety measures, the potential for AI technologies to be misused by criminal actors, and the limitations of current AI models.

Research Nov 14, 2023

Save to Folio

Research Nov 14, 2023

Save to Folio