News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Asking the right questions
Asking the right questions

“Predictions are difficult, especially when they concern the future.” This statement, which has been attributed to either the American author Mark Twain or the German comedian Karl Valentin, can easily be applied to cyber security. In our industry, it is sometimes even difficult to predict what will happen in the next 30 seconds - let alone twelve months. My colleagues and I believe that it is more productive to forego (more or less vague) forecasts and instead ask (difficult and unpleasant) questions - in order to generate new ways of thinking...

Read more

Realst Infostealer malware infects macOS targets
Realst Infostealer malware infects macOS targets

Realst Infostealer is distributed via fake blockchain games and also targets macOS operating systems. In early July, security researcher iamdeadlyz reported on several fake blockchain games being used to infect both Windows and macOS targets with infostealers capable of emptying crypto wallets and stealing saved password and browsing data. In the case of macOS, the infostealer turned out to be a new malware written in Rust called "realst". Building on a previous analysis, SentinelLabs, the research arm of SentinelOne, identified and analyzed 59 malicious Mach-O samples of the…

Read more

Better protect corporate networks from malware
Better protect corporate networks from malware

Malware attacks are becoming more sophisticated, and as business processes continue to move to the cloud, organizations need to improve their defenses to protect against them. SentinelOne announces the launch of its Cloud Data Security product line and the general availability of the first two products: Threat Detection for Amazon S3 and Threat Detection for NetApp. These products are designed to help companies using Amazon S3 object storage and NetApp file storage to detect and prevent the spread of malware in their cloud environments and corporate networks. The new offerings are part of the Singularity Cloud product family and complement...

Read more

New ransomware tactic: partial encryption
New ransomware tactic: partial encryption

There is a new trend in ransomware: In order to be faster and avoid detection, attackers rely on partial (intermittent) encryption of the files. As the SentinelLabs blog reports, security functions can also be outwitted in this way. A new danger! SentinelOne experts are observing a new trend in the ransomware scene – intermittent encryption or partial encryption of victims' files. This encryption method helps ransomware operators bypass detection systems and encrypt victims' files faster. Instead of encrypting an entire file, the process only takes place for all…

Read more

Tricked: Microsoft Defender runs malware
B2B Cyber ​​Security ShortNews

LockBit actors use Windows Defender command-line tool MpCmdRun.exe to infect PCs with Cobalt Strike Beacon. After that, the ransomware LockBit will be installed. Microsoft should be on high alert if they aren't already. Cybersecurity research company SentinelOne has released news: They have discovered that Microsoft's internal anti-malware solution is being abused to load Cobalt Strike Beacon onto victim PCs and servers. In this case, the attackers are operators of LockBit Ransomware as a Service (RaaS). As a starting point for the attack, the command-line tool in Defender called MpCmdRun.exe is abused to…

Read more