DOJ is a 22-year-old billing running a rapper bot botnet behind a 370,000 DDOS attack

August 20, 2025Ravi LakshmananBotnet/Cybercrime A 22-year-old man from Oregon, USA, has been charged with developing and overseeing a dispersed refusal (DDOS)-Hire Botnet, known as Rapperbot. Ethan Foltz of Eugene, Oregon, has been identified as the administrator of the service, the U.S. Department of Justice (DOJ) said. Botnets have been used since at least 2021 to […]

2025 Gartner® Magic Quadrant™ for Endpoint Protection

Gartner, Magic Quadrant for Endpoint Protection Platforms, Evgeny Mirolyubov, Franz Hinner, Deepak Mishra, July 14, 2025. Gartner does not endorse any vendor, product or service depicted in its research publications, and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner research publications consist of the opinions […]

2025 Gartner® MagicQuadrant™ Endpoint Protection

Gartner, Magic Quadrant of Endpoint Protection Platform, Evgeny Mirololyubov, Franz Hinner, Deepak Mishra, July 14, 2025. Gartner does not endorse any vendors, products or services portrayed in research publications, and does not advise technology users to select only vendors with the highest ratings or other designations. Gartner’s research publications are composed of the opinions of […]

Apache activemq flaw was exploited to deploy Dripdropper malware on cloud Linux systems

August 19, 2025Ravi LakshmananLinux/Malware Threat actors are taking advantage of the security flaws of almost two years ago in Apache ActiveMQ to gain permanent access to Cloud Linux systems and deploying malware called DripDropper. However, with an anomalous twist, it has been observed that unknown attackers patched exploited vulnerabilities after ensuring initial access to prevent […]

The new Godratotrojan is targeting trading companies using steganography and GH0st rat code

August 19, 2025Ravi LakshmananMalware/Cyber Attacks Financial institutions such as trading and brokerage companies are the targets of new campaigns offering previously unreported remote access trojans called Godrat. Malicious activities include “distribution of malicious .SCR (screensaver) files disguised into financial documents via Skype Messenger.” The attack, which became active on August 12, 2025, employs a technique […]

Publication of Chains sap defects publishes unreceived systems to remote code execution

August 19, 2025Ravi LakshmananVulnerability/Cyberspy A new exploit combines two important, currently patched security flaws from SAP NetWeaver, emerging in the wild, with organizations taking the risk of system compromise and data theft. The exploit in question would chain CVE-2025-31324 and CVE-2025-42999 together to bypass authentication and enable remote code execution, SAP security company Onapsis said. […]

UK government drops Apple Crypto Backdoor Order after pushback of US civil liberties

August 19, 2025Ravi LakshmananEncryption/Cloud Security The UK government appears to have abandoned its plans to weaken Apple’s encryption protections and include a backdoor that will allow US citizens to access protected data. US National Intelligence Director (DNI) Tarsi Gabbard said in a statement posted to X that the US government had been working with its […]

Why your security culture is important to mitigate cyber risk

Twenty years after developing an increasingly mature security architecture, organizations are opposed to difficult truths. Tools and technology alone are not enough to mitigate cyber risk. As the high-tech stack became more refined and more capable, the attackers changed their focus. They no longer focus solely on infrastructure vulnerabilities. Instead, they are increasingly exploiting human […]

Pypi blocks 1,800 expired domain emails to prevent account acquisitions and supply chain attacks

August 19, 2025Ravi LakshmananSupply Chain Security Maintainers of the Python Package Index (PYPI) repository have announced that package managers now check for expired domains to prevent supply chain attacks. “These changes will improve PYPI’s overall account security attitude and make it difficult for attackers to leverage expired domain names to gain unauthorized access to their […]

Noodle malware campaign expands global reach with copyright fishing lures

August 18, 2025Ravi LakshmananMalware/Enterprise Security Threat actors behind the noodle malware are leveraging spear phishing emails and updated delivery mechanisms to launch information stealing in attacks targeting businesses in the US, Europe, the Baltic countries and the Asia-Pacific region (APAC). “Over a year, the noodle campaign has been active, leveraging advanced spear phishing emails as […]