Geek-Guy.com

Category: Threat Intelligence

Iranian bank purportedly breached by pro-Israel hacktivists

TechCrunch reports that Iran’s Bank Sepah was allegedly breached and disrupted by pro-Israeli hacktivist operation Predatory Sparrow, also known as Gonjeshke Darande, which accused the state-owned bank of evading sanctions and leveraging the country’s funds to support its military nuclear and ballistic missile programs, as well as its terrorist proxies.

Addressed Google Chrome zero-day leveraged to spread Trinper backdoor

GBHackers News reports that attacks exploiting the already-fixed high-severity Google Chrome zero-day flaw, tracked as CVE-2025-2783, have been launched by the Team46 advanced persistent threat operation, also known as TaxOff, to spread the Trinper malware as part of a campaign that was initially observed in March.

Revamped threat actor naming scheme sought by ex-CISA, NCSC leaders

Former Cybersecurity and Infrastructure Director Jen Easterly and UK National Cyber Security Centre Founding Director Ciaran Martin have called on private and public cybersecurity organizations to implement a standardized vendor-neutral threat actor naming scheme that would facilitate improved interoperability, Infosecurity Magazine reports.

TeamFiltration pentesting tool harnessed in global Microsoft Entra ID attack campaign

Attacks exploiting the TeamFiltration penetration testing framework have been launched by the threat actor UNK_SneakyStrike to target over 80,000 Microsoft Entra ID accounts across hundreds of organizations worldwide, some of which were successfully taken over, as part of a campaign that commenced in December, BleepingComputer reports.

Widespread Russia, CIS-targeted intrusions launched by Rare Werewolf APT

Hundreds of users across Russian industrial enterprises and engineering schools, as well as organizations in Belarus and Kazakhstan that are part of the Commonwealth of Independent States, have been targeted by the advanced persistent threat operation Rare Werewolf in attacks involving credential theft and XMRig cryptominer compromise, The Hacker News reports.

Amazon, CrowdStrike, Google and Palo Alto Networks claim no change to threat intel sharing under Trump

SAN FRANCISCO — Threat intelligence sharing is flowing between the private sector and federal government and remains unimpeded thus far by job losses and budget cuts across federal agencies that support the cyber mission, according to executives at major security firms. Top brass at Amazon, CrowdStrike, Google and Palo Alto Networks said there’s been no…

Amazon, CrowdStrike leaders say private threat intel can quickly bring cybercriminals to justice

SAN FRANCISCO — Threat intelligence flowing from private companies to cybersecurity authorities and law enforcement agencies is critical to the disruption of malicious activities and the arrests of cybercriminals, security leaders at Amazon and CrowdStrike said Monday during the RSAC 2025 Conference.  When the private sector and governments interact well, actively participating and sharing resources…

Domain Reputation Update Oct 2024 – Mar 2025

New domains are up 7.39%, with 2.9 million malicious domains detected. Chinese gambling sites dominate the Top 20 TLDs, while .top remains a hotspot for abuse – this time with a spike in toll road scams. Read the full report here. The post Domain Reputation Update Oct 2024 – Mar 2025 appeared first on Security…

Domain Reputation Update Oct 2024 – Mar 2025

New domains are up 7.39%, with 2.9 million malicious domains detected. Chinese gambling sites dominate the Top 20 TLDs, while .top remains a hotspot for abuse – this time with a spike in toll road scams. Read the full report here. The post Domain Reputation Update Oct 2024 – Mar 2025 appeared first on Security…

From Spreadsheets to Solutions: How PlexTrac Enhances Security Workflows

In this special episode of the Shared Security Podcast, join Tom Eston and Dan DeCloss, CTO and founder of PlexTrac, as they discuss the challenges of data overload in vulnerability remediation. Discover how PlexTrac addresses these issues by integrating various data sources, providing customized risk scoring, and enhancing remediation workflows. The episode offers an insightful…

WordPress Appliance - Powered by TurnKey Linux