30 Jun Lorenz ransomware decryptor recovers victims’ files for free Dutch cybersecurity firm Tesorion has released a free decryptor for the Lorenz ransomware, allowing victims to recover some of their files for free without paying a ransom. […]
29 Jun Hackers use zero-day to mass-wipe My Book Live devices A zero-day vulnerability in Western Digital My Book Live NAS devices allowed a threat actor to perform mass-factory resets of devices last week, leading to data loss. […]
29 Jun Windows 11 includes the DNS-over-HTTPS privacy feature – How to use Microsoft has added a privacy feature to Windows 11 called DNS-over-HTTPS, allowing users to perform encrypted DNS lookups to bypass censorship and Internet activity. […]
29 Jun Russian hackers had months-long access to Denmark’s central bank Russian state hackers compromised Denmark’s central bank (Danmarks Nationalbank) and planted malware that gave them access to the network for more than half a year without being detected. […]
28 Jun REvil ransomware’s new Linux encryptor targets ESXi virtual machines The REvil ransomware operation is now using a Linux encryptor that targets and encrypts Vmware ESXi virtual machines. […]
28 Jun Ransomware gangs now creating websites to recruit affiliates Ever since two prominent Russian-speaking cybercrime forums banned ransomware-related topics [1, 2], criminal operations have been forced to promote their service through alternative methods. […]
27 Jun Cisco ASA vulnerability actively exploited after exploit released Hackers are scanning for and actively exploiting a vulnerability in Cisco ASA devices after a PoC exploit was published on Twitter. […]
26 Jun Nobelium hackers accessed Microsoft customer support tools Microsoft says they have discovered new attacks conducted by the Russian state-sponsored Nobelium hacking group, including a hacked Microsoft support agent’s computer that exposed customer’s subscription information. […]
26 Jun Microsoft admits to signing rootkit malware in supply-chain fiasco Microsoft has now confirmed signing a malicious driver being distributed within gaming environments. This driver, called “Netfilter,” is in fact a rootkit that was observed communicating with Chinese command-and-control IPs. […]
25 Jun The Week in Ransomware – June 25th 2021 – Back in Business It has been relatively quiet this week, with few attacks revealed and few new ransomware variants released. However, some interesting information came out that we have summarized below. […]