Topic
Emerging Issue

Asset Visibility is Key in Addressing CISA’s BOD 23-01
Learn how agencies can address the U.S. Cybersecurity & Infrastructure Security Agency's new Binding Operational Directive (BOD 23-01).

Why the Bridges Between Blockchains Are Under Assault
Connections between blockchains are the weak links in the security armor of the “unhackable” technology underpinning the next generation of the internet.

Hackers Use PowerPoint Files for “Mouseover” Malware: Cyber Threat Intelligence Roundup
Hackers use PowerPoint files for mouse-hover malware delivery, Russia plans “massive cyberattacks” on critical infrastructure, and researchers uncover a covert attack campaign targeting military contractors.

To Defend Against Vishing, Get Smart
Voice-phishing attackers use urgent calls to trick users into divulging sensitive data and breaking into your network. Here’s how CISOs can be prepared for this popular form of cybercrime.

The Rise of Phishing-as-a-Service: Cyber Threat Intelligence Roundup
The minimal impact of offensive hacks in the Russia - Ukraine conflict, a new EvilProxy phishing toolkit and Monti ransomware emerges.

Kimsuky’s New Malware Attack Strategy: Cyber Threat Intelligence Roundup
Kimsuky’s new strategy for evading security researchers, Chinese hackers use ScanBox malware to target the Australian government, and new ransomware called Agenda that’s customized for each victim.

Nobelium's New ‘MagicWeb’ Malware: Cyber Threat Intelligence Roundup
The latest on APT29’s new post-exploitation strategy, an ongoing campaign against U.S. and NATO-affiliated organizations, and how hackers are using the Sliver toolkit as a Cobalt Strike alternative.

The State of Ransomware in 2022: Cyber Threat Intelligence Roundup
Investigating ransomware data from the first half of 2022, the latest on information-stealing malware deployed by Russia’s Shuckworm APT, and a look at UNC3890 activity observed actively targeting Israeli organizations.

BazarCall, Yanluowang, BumbleBee: Cyber Threat Intelligence Roundup
An advisory about BazarCall, the latest on the Yanluowang ransomware attack against Cisco, and more in our cyber threat intelligence roundup.

Malicious Macros, Dark Utilities, LockBit: Tanium Cyber Threat Intelligence Roundup
Ransomware gangs are exploiting macros, threat actors are leveraging the Dark Utilities platform, and more in the cyber threat intelligence roundup.

New Report Reveals Commodity Malware Surpasses Ransomware: Cyber Threat Intelligence Roundup
Top incident response trends from Q2, a new 'CosmicStrand' UEFI rootkit, and Censys discovers evidence of Russia-based ransomware network in the U.S.

Russian APT29 Hackers Use Google Drive and Dropbox to Evade Detection: Cyber Threat Intelligence Roundup
Russian APT29 hackers are using Google Drive and Dropbox to evade detection, new CloudMensis spyware is targeting Apple macOS users, and more in our cyber threat intelligence roundup.