Phishing Campaign Uses Fake Software Updates To Install Remote Access Tools
Phishing campaigns use fake software updates and signed installers to deploy RMM tools, enabling persistent remote access.
Phishing campaigns use fake software updates and signed installers to deploy RMM tools, enabling persistent remote access.
Learn how detecting user UPNs embedded in URLs can expose AiTM phishing, MFA bypass, and session theft activity.
ConsentFix is a new OAuth phishing attack abusing Microsoft consent to gain persistent access without stealing credentials.
Learn how to detect phishing emails that bypass filters using long sender address abuse with Microsoft Defender XDR and Sentinel.
Like many other popular holidays around the world, Valentine’s Day is beloved by millions of people and is widely celebrated. Unfortunately, holidays like this have become a magnet for cybercriminals, as people look to buy gifts, book experiences, and do something special for their significant other. Due to the popularity of Valentine’s Day, certain things...
Cybersecurity tips – Ensuring that an organisation is protected from cybercrime can be a complex, time-consuming and costly process. Rather than publishing a set of predictions for 2020, we thought it would be more helpful to prepare a practical guide to what we believe are the essential cyber security activities for all companies: SECURITY ASSESSMENTS...
How to recognise a phishing email scam The Global Information Security Survey 2018-2019 has reported that scammers send out 6,4 billion fake emails every day. With the risk of phishing scams becoming increasingly more common, how can you recognise what’s a scam and what’s not? Check the sender address Who has the email come from? Phishing scams...
What are insider threats? Cyber security breaches caused by malware, hacking, denial of service (DDoS) and ransomware are reported daily. They often appear to be more frequent and damaging than cyber breaches caused by the insider threat from the people who work for the organisation itself. Many cyber security threats will come from the accidental or malicious involvement of...
Emotet has been named as one of the next-generation malware stars of 2018 in the Malwarebytes report, ‘Under the Radar – The Future of Undetected Malware’. Emotet has been terrorising systems worldwide for much of the year, with large campaigns reported in both Q1 and Q3 of 2018. Between January and September 2018, it was detected...
The Internet Crime Complaint Center (IC3) of the FBI is reporting that email-based social engineering attacks were the most commonly reported cybercrime category in the US in 2017. Business e-mail compromise (fake CEO attack) and fake investment scams targeting companies and not for profit organisations resulted in an estimated loss of over $676 million dollars. ...
By now you’ve surely heard of ransomware and most people with speak with have been a victim of a ransom attack or know another company that has been breached. This type of cyber attack is when “cyber kidnappers” take your computer or network hostage and infect a computer or computer system with a virus that locks all the...