Topic
Emerging Issue

New Report Reveals Commodity Malware Surpasses Ransomware: Cyber Threat Intelligence Roundup
Top incident response trends from Q2, a new 'CosmicStrand' UEFI rootkit, and Censys discovers evidence of Russia-based ransomware network in the U.S.

Russian APT29 Hackers Use Google Drive and Dropbox to Evade Detection: Cyber Threat Intelligence Roundup
Russian APT29 hackers are using Google Drive and Dropbox to evade detection, new CloudMensis spyware is targeting Apple macOS users, and more in our cyber threat intelligence roundup.

Ransomware Gangs Make Stolen Data Searchable: Cyber Threat Intelligence Roundup
Ransomware groups are making stolen data searchable, Qakbot malware attacks are on the rise, and more in our cyber threat intelligence roundup.

FBI and MI5 Issue Warning of China Spying: Cyber Threat Intelligence Roundup
FBI and MI5 warn of massive China threat, a new red-teaming tool is being abused by threat actors, and an emerging supply-chain-style attack top our latest threat intelligence roundup

Tanium Cyber Threat Intelligence Roundup
The latest emerging threats, advancements in adversarial tactics, and trends observed across the cyber threat landscape.

What You Need to Know About Microsoft Office Zero-Day Vulnerability Follina
New Microsoft Office zero-day (CVE-2022-30190) named Follina is being exploited in attacks by cybercriminals and state-sponsored APT groups.

How Tanium Can Help With the Log4j Vulnerability
Log4j is a popular open-source logging utility used by millions of Java applications. The underlying “improper input validation” flaw (CVE-2021-44228) has been dubbed “Log4Shell.”

Spring4Shell Vulnerability: Critical Details and How to Protect Your Organization
Named CVE-2022-22965, this vulnerability in the widely used Spring Framework has substantial exploit potential.

Why Organizations Need to Patch a Critical Zero-Day in Chrome
A new vulnerability has been found in both Chrome and Microsoft’s Chromium-based Edge products. Here's what you need to know.

Hiding in Plain Sight: Researchers Discover Critical Linux Bug
Learn what you need to know about CVE-2021-4034, the PwnKit vulnerability that gives root on all major Linux distros, and how Tanium can help.

How Tanium Can Identify the SolarWinds Exploit
In December 2020, FireEye released a threat research alert identifying a global campaign to infiltrate public and private organizations through “trojanized updates'' of the SolarWinds IT monitoring and management software.

How Tanium Can Protect Your Organization Against the Azure OMI Vulnerability
Recently, Microsoft issued a security advisory against multiple vulnerabilities for Open Management Infrastructure (OMI). OMI affects Linux VM’s running the OMS Agent in Azure, as well as other Linux systems that have an older version of the software.