Rhadamanthys Infostealer Exploits Microsoft Management Console to Distribute Malware

Cybersecurity researchers have identified a new tactic used by the Rhadamanthys Infostealer to spread malware, leveraging Microsoft Management Console (MMC) files with the MSC extension. This latest discovery, confirmed by the AhnLab Security Intelligence Center (ASEC), highlights an evolving threat where attackers misuse legitimate administrative tools for malicious purposes. Methods of Exploitation The Rhadamanthys Infostealer […]

Dream Secures $100M Series B Funding to Strengthen National Cybersecurity

Dream, an AI-driven cybersecurity company specializing in national and critical infrastructure protection, has announced the successful closure of a $100 million Series B funding round. Led by Bain Capital Ventures, this latest investment values the company at $1.1 billion. Additional investors include Group 11, Tru Arrow, Tau Capital, and Aleph. The funding will support Dream’s […]

SonicWall Authentication Flaw Faces Active Exploitation Threat

Security researchers warn of ongoing exploitation of a critical vulnerability in SonicWall’s SonicOS. Key Findings: Ongoing Exploitation and Threat Landscape SonicWall initially patched CVE-2024-53704 after researchers from Computest Security disclosed the flaw. At the time of the patch release, the company stated it had no evidence of active exploitation. However, subsequent findings suggest otherwise. Researchers […]

PayPal Fined $2 Million Over Data Breach Impacting 35,000 Social Security Numbers

Digital payments leader PayPal has agreed to pay a $2 million fine following a cybersecurity incident in December 2022 that exposed thousands of Social Security numbers, according to New York state regulators. The penalty resolves violations of New York’s financial cybersecurity regulations, which require companies like PayPal to employ qualified personnel to manage critical cybersecurity […]