Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware
시스코 FMC 취약점이 공격에 이용되어 자격증명이 도용되고 있다.
Cisco FMC vulnerabilities exploited to steal credentials and deploy ransomware.
AI가 선별한 아티클
시스코 FMC 취약점이 공격에 이용되어 자격증명이 도용되고 있다.
Cisco FMC vulnerabilities exploited to steal credentials and deploy ransomware.
Aurora 랜섬웨어 공격자들이 Cursor AI를 사용하여 네트워크 해킹.
Aurora ransomware operators use Cursor AI to infiltrate networks of 10 targets.
WordlistLoader와 SynkLoader라는 두 종류의 새로운 맬웨어가 발견되었습니다.
Two new malware families, WordlistLoader and SynkLoader, have been discovered.
Ransom Busters라는 랜섬웨어 제휴자가 피해자에게 데이터 복구를 돕겠다고 제안하고 있습니다.
A ransomware affiliate called Ransom Busters is offering to help victims recover data for a fee.
중국 연계 심각한 사이버 공격자가 VMware vCenter 보안 결함을 이용해 ransomware를 배포했습니다.
A China-linked actor exploits a VMware vCenter flaw to deploy Babuk-derived ransomware.
DeadLock 랜섬웨어가 폴리곤 스마트 계약을 이용하여 extortion 인프라를 강화하고 있습니다.
DeadLock ransomware uses polygon smart contracts to enhance extortion infrastructure.
Gunra 랜섬웨어가 Fortinet과 Schneider Electric의 취약점을 악용해 네트워크를 침해합니다.
Gunra ransomware exploits vulnerabilities in Fortinet and Schneider Electric to breach networks.
중국 해커들이 StormEncryptor 랜섬웨어를 배포했다는 소식입니다.
China-linked hackers have deployed a new ransomware called StormEncryptor.
Ransom Cartel의 창립자가 랜섬웨어 서비스 운영으로 16년형을 선고받았다.
The creator of Ransom Cartel receives a 16-year prison sentence for running a ransomware-as-a-service.
INC 랜섬웨어가 SonicWall SMA 1000의 취약점을 악용하며 두드러진 위협 세력으로 부상했습니다.
INC ransomware has emerged as a dominant threat exploiting SonicWall SMA 1000 vulnerabilities.
Cl0p 랜섬웨어가 인터넷에 노출된 PTC Windchill과 FlexPLM의 취약점을 악용하고 있다.
Cl0p ransomware actors are exploiting vulnerabilities in internet-exposed PTC Windchill and FlexPLM.
DevMan RaaS 포털이 공격자에게 피해자 관리 및 수익 추적 기능을 제공합니다.
DevMan RaaS portal provides attackers with victim management and earnings tracking features.
Chaos 랜섬웨어가 msaRAT를 사용해 C2 트래픽을 헤드리스 브라우저를 통해 우회한다.
Chaos ransomware uses msaRAT to route C2 traffic through the victim's headless browser.
해커에게 몸값을 지불하면 추가 요구가 있을 가능성이 높다는 연구 결과.
Paying a hacker's ransom increases the likelihood of further demands.
Qilin 랜섬웨어 공격자들이 PAN-OS 인증 우회 취약점을 이용하여 침입한 사례를 보고했습니다.
Qilin ransomware attackers exploit PAN-OS authentication bypass vulnerability for initial access.
ENCFORGE 랜섬웨어가 AI 모델 파일을 타겟으로 하는 공격이 발견됐다.
ENCFORGE ransomware targets AI model files in a recent attack.
해커가 루마니아의 토지 등기 데이터베이스를 삭제하여 부동산 시장이 멈췄다.
A hacker deleted Romania's land registry database, halting the real estate market for a week.
아르메니아가 REvil 해커로 지목된 러시아 관광객을 체포했다는 소식.
Armenia detains a Russian tourist on a US warrant for a REvil hacker.
이번 주 사이버 위협에 대한 간단한 개요.
A brief overview of this week's cyber threats.
미국 정부가 사이버 범죄 지원으로 첫 VPN 서비스와 악성코드 판매자를 제재했습니다.
The U.S. government sanctions the first VPN service and malware seller for supporting cybercriminal activities.
이번 주 보안 동향에 대한 요약입니다.
Summary of this week's security trends.
랜섬웨어 협상가가 블랙캣 공격 지원으로 70개월 징역형 선고.
Ransomware negotiator sentenced to 70 months for aiding BlackCat attacks.
GigaWiper라는 윈도우 백도어가 세 가지 파괴적인 기능을 제공한다고 Microsoft가 보고했다.
Microsoft reports on GigaWiper, a Windows backdoor that bundles destructive capabilities.
GodDamn 랜섬웨어가 PoisonX 드라이버를 사용해 엔드포인트 방어 시스템을 무력화합니다.
GodDamn ransomware uses PoisonX driver to disable endpoint defenses.
AI가 실제 랜섬웨어 공격을 실행했지만, 여전히 인간의 개입이 필요했다.
An AI executed a ransomware attack, but human intervention was still necessary.
이번 주의 주요 보안 이슈는 신뢰의 문제이다.
This week's key security issues revolve around trust.
미국 정부 기관이 데이터 절도 협상에서 카이로스에게 100만 달러를 지불했다는 사례 연구가 발표됐다.
A U.S. government entity paid $1 million to Kairos in a data theft extortion case, according to a case study.
새로운 Avalan 악성코드 프레임워크가 CrownX 랜섬웨어 기능을 포함하고 있습니다.
The new Avalon malware framework includes capabilities for CrownX ransomware.
Anubis 랜섬웨어 그룹이 Citrix Bleed 2 취약점을 이용해 초기 접근을 시도함.
Anubis ransomware groups exploit Citrix Bleed 2 vulnerability for initial access.
제목은 보안 취약점을 다뤘습니다.
The article discusses security vulnerabilities in various systems.