Read all Blogs from this Author
CloudSEK's threat research team has uncovered a ransomware attack disrupting India's banking system, targeting banks and payment providers. Initiated through a misconfigured Jenkins server at Brontoo Technology Solutions, the attack is linked to the RansomEXX group.
On 12 September 2024, CloudSEK’s XVigil found threat actor "Fortibitch" leaking 440GB of data from Fortinet’s SharePoint after failed extortion. While ransomware use is unclear, the actor mentioned Ukrainian group DC8044, but no direct link is confirmed. It’s believed with medium confidence that the actor is based in Ukraine.
Read all Whitepapers and reports from this Author
The report "MichaMichaBot: Unmasking the Threats Exploiting Missing 'X-Frame-Options' Headers" reveals how cybercriminals exploit this vulnerability to launch phishing attacks by embedding legitimate websites in iframes with fake login panels. It provides insights into these attack methods and practical strategies to secure digital assets against such threats.
Read MoreExplore CloudSEK’s report on the Middle East's cyber threats, including analysis of hacktivist and APT group tactics, and cybersecurity recommendations.
Read MoreOur whitepaper, "Unveiling Maorrisbot: The Inner Workings of an Android Trojan Malware," explores the sophisticated methods and impacts of Maorrisbot malware, offering insights and strategies to protect your devices. Download it to learn how to safeguard against this significant Android threat.
Read MoreRead all knowledge base articles from this Author