This blog is a follow-up on our How to Crush Cybercriminals with Managed Antivirus webinar. We'll dive deeper through a threat analysis lens.
I can't tell you not to seek ethical hacking certification from EC-Council. But I can suggest that if you are looking for an online university to boost your cybersecurity career, you don't settle...
I’ve come to realise that I wasn’t the only one that has never actually exploited an HTTP Request Smuggling vulnerability, three years after James Kettle reminded the world of it. Like many, I’ve...
We're continuing to deliver on our promise to secure the 99% by acquiring Curricula: a story-based security awareness training platform.
On 2022-07-18, an incident was reported, involving an unknown actor, gaining initial access via Cloud native misconfig, to achieve Supply chain attack, Denial of wallet.
Learn about Huntress’ Neighborhood Watch Program: a collection of programs and resources designed to help elevate the broader security community.
On 2022-07-11, a campaign was reported, involving Bondnet, gaining initial access via Password attack, targeting Microsoft SQL Server to achieve Resource hijacking.
On 2022-07-07, a campaign was reported, involving 8220 Gang, gaining initial access via 1-day vulnerability, to achieve Resource hijacking.
Firmware analysis is an essential part of security research and targeted search for vulnerabilities in IoT products. This article examines conventional methods of dynamic analysis and some less...
Learn about four of the most prominent attacker evasion techniques that hackers use—and how you can defend your environments against them.
Group-IB’s platform allows organizations to overcome cyber risks
Support for Alibaba Cloud follows just weeks after launch of Oracle Cloud Infrastructure (OCI) integration, providing organizations the broadest coverage of any cloud native application protection...
Read how our ThreatOps team used Huntress Managed EDR and Managed Antivirus to stop bad actors who were exploiting Log4Shell vulnerabilities.
A previously unknown Chinese-speaking threat actor attacking telecommunications, manufacturing, and transport organizations in several Asian countries. The group exploits MS Exchange vulnerability...
Hunting the latest TTPs used for delivering the Trojan
Enhance your organization's security posture with our Diversity Security Awareness Training content. Explore engaging modules designed to foster inclusivity while equipping your team with...
An LNK file is a Windows Shortcut that serves as a pointer to open a file, folder, or application. LNK files are based on the Shell Link binary file format, which holds information used to access...
On 2022-06-21, a campaign was reported, involving DarkRadiation operator, gaining initial access via Unknown, while using Database ransomware, Disk Wipe, Remotely execute commands or scripts on a...
Dive into the types of threats we’ve thwarted with Managed Antivirus and how IT teams are seeing more value from making the switch.
OpenWRT, an open source firmware solution for home routers, was breached exposing the email addresses of many of its forum users.
OpenWRT, an open source firmware solution for home routers, was breached exposing the email addresses of many of its forum users.
Learn about the latest platform changes and updates as Huntress continues to scale to protect the 99%.
Nikita Rostovtsev on current cyber threats and his profession
Unsecured public-facing database allowed anyone to access ID selfies for months
Register for our 2022 Google Cloud Summit series, and be among the first to learn about new solutions across data, machine learning, collaboration, security, sustainability, and more. You’ll hear...
This blog dives into triangulation as a guiding concept during investigations and reporting.
Authored by Dexter Shin Instagram has become a platform with over a billion monthly active users. Many of Instagram’s users... The post Instagram credentials Stealers: Free Followers or Free Likes...
Authored by Dexter Shin McAfee’s Mobile Research Team introduced a new Android malware targeting Instagram users who want to increase... The post Instagram credentials Stealer: Disguised as Mod...
Group-IB identifies massive campaign capable of targeting clients of major Vietnamese banks
Wiz Research builds upon previous “OMIGOD” findings with a presentation at RSA Conference 2022; details how cloud middleware use across cloud service providers can expose customers' virtual...