Cyware Feed
scammers-use-residential-ip-addresses-to-launch-bec-attacks

Scammers Use Residential IP Addresses to Launch BEC Attacks

The Cyber Signals report revealed that Microsoft detected 35 million BEC attempts with an average of 156,000 attempts daily between April 2022 and April 2023. Microsoft also noticed a pattern in which attackers used a phishing-as-a-service platform, BulletProftLink, to obtain login credentials. To protect, enterprises can enable notifications and configure mail systems to flag messages […]

Cyware Feed
windows-kernel-drivers-used-in-blackcat-attacks

Windows Kernel Drivers Used in BlackCat Attacks

Trend Micro revealed that the BlackCat ransomware group is using a signed kernel driver for evasion tactics. The driver was utilized in conjunction with a separate user client executable, with the intention of manipulating, pausing, and terminating specific processes associated with the security on the targeted endpoints. Windows admins must ensure that ‘Driver Signature Enforcement’ […]