2018-11-28 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Resource policies lacked a way of restricting service access to only your own account, allowing an attacker to leverage a service to potentially access your resources. Originally discovered by Dan Peebles and presented at re:Invent in 2018, this issue did not gain enough attention to be fixed until Shir Tamari and Ami Luttwak from Wiz presented it at Black Hat 2021.
P0
2018-09-06 20:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Read more about security updates to the Huntress platform.
P5
2018-09-05 11:51 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB has exposed the attacks committed by Silence cybercriminal group.
P0
2018-08-16 20:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Preventive security products like antivirus have made major strides in their ability to detect malicious behaviors as opposed to weak/static signatures. When implemented properly, these heuristics are capable of discovering even the most cleverly obfuscated routines. But don’t ring the victory bells yet. This cat-and-mouse game is just getting started…
P0
2018-08-13 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Attackers had put malicious AMIs in the marketplace to abuse the CLI''s way of selecting what AMI to use. Although the concept of planting malicious AMIs had existed for a while (ex. in the 2009 presentation "Clobbering the clouds" by Nicholas Arvanitis, Marco Slaviero, and Haroon Meer) it had not been used specifically to target this issue with the CLI.
P0
2018-08-10 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Patrick Hudak demonstrated possible subdomain takeover using the Traffic Manager in Azure.
P0
2018-07-17 19:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Explore this phishing campaign used the age-old “Please remit payment” spiel to lure potential victims into opening the attached file.
P0
2018-05-29 20:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Regardless of your daily duties, we’ve all encountered annoying ads, unwanted pop-ups, or generically named rogue applications. These nuisances, commonly called Potentially Unwanted Programs (PUP), are often unknowingly installed when downloading free software.
P0
2018-05-29 11:56 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
New attacks and joint operations
P0
2018-05-15 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Even for the AWS-managed ElasticSearch clusters that had not been made public, their index names could be learned.
P0
2018-01-30 07:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
For many of us in the Managed Services Provider market, we were rocked with news of a vulnerability in Kaseya’s VSA product. The purpose of this blog is to shine technical light on what the Huntress ThreatOps team observed and analyzed thus far.
P0
2017-12-11 12:12 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB has uncovered a hacker group attacking banks in the USA and Russia
P0
2017-11-27 08:39 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
P0
2017-11-07 15:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
IT Nation 2016 ended on a high note for Huntress Labs as we were named the “Best Newcomer” in the Partner Choice Awards. Now, as this year’s event quickly approaches, we are excited to continue our momentum.
P0
2017-11-07 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
AWS has previously provided managed policies or guidance in documentation for policies with mistakes that allow them to be bypassed. Additionally, some policies are over-privileged. Date of disclosure is for the first issue of this type, while references provide other examples by various individuals.
P0
2017-11-02 13:04 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
How faudsters cash in on hype around new iPhones
P0
2017-10-26 12:15 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Research revealed that the BadRabbit code was compiled from NotPetya sources.
P0
2017-10-24 12:22 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
There is a connection between BadRabbit and Not Petya
P0
2017-10-19 13:13 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Russia has developed a strong legal framework to combat online piracy. All that is needed is for it to be used effectively (especially for Forbes.ru)
P0
2017-10-10 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
The AWS Java SDK was vulnerable to XML external entity (XXE) injection related to XML parsers.
P0
2017-10-02 13:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Recently, my co-founders gave a talk at DerbyCon 7.0 on evading common persistence enumeration tools. Evasion using trusted applications has been a hot topic of discussion within the infosec community and is one of the techniques they covered in their presentation. However, very little discussion exists on why these matter or the steps researchers take to find “hosting” applications.
P0
2017-09-26 13:20 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Top global airline companies have been compromised by fraudsters for the second time during the last six months.
P0
2017-08-25 14:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Over the past month, the Emotet family of malware has re-emerged as a formidable piece of crimeware, thanks to its new self-propagation techniques (undoubtedly inspired by the success of WannaCry and Petya).
P0
2017-08-15 12:25 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
How Cobalt hackers bypass your defenses
P0
2017-08-10 13:36 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
On the price of hacker attacks and the toxic cyber environment
P0
2017-08-04 13:34 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
The man who "saved the world" from the WannaCry outbreak has been arrested on suspicion of being the author of Kronos banking Trojan
P0
2017-08-02 12:29 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Group-IB reveals the identity of alleged members of the Islamic hacker group United Islamic Cyber Force
P0
2017-07-24 13:40 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Russia as a testing ground
P0
2017-07-17 17:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Dive deep into Redosdru malware analysis, unpacking encrypted DLLs, keylogging behavior, and how Huntress defenders detect and respond.
P0
2017-07-17 17:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
During the previous MSP Moment, we walked our readers through an incident where our partner, NTConnections, used Huntress to discover a previously undetected breach. In this Deep Drive, we’ll examine the tradecraft used by the attackers to gain access through the database, kill/disable antivirus, download malicious files, and establish a persistent foothold within the network.
P0