News & Updates

GamaCopy targets Russia mimicking Russia-linked Gamaredon APT

New threat actor GamaCopy mimics Russia-linked Gamaredon APT in attacks on Russian-speaking targets. The Knownsec 404 Advanced Threat Intelligence team recently analyzed attacks on Russian-speaking targets using military-themed bait, 7z SFX for payloads, and UltraVNC, mimicking Gamaredon’s TTPs. The researchers linked the activity to the APT Core Werewolf (aka Awaken Likho, PseudoGamaredon), it mimics Gamaredon […]
News & Updates

Brushing Scams With a Twist: What to Do When an Unexpected Package Asks You to Scan a QR Code

The FTC has reissued a consumer alert notifying people of potential new twists on brushing scams and how scammers may attempt to capitalize on your lack of awareness.

Imagine this: you receive a package addressed to you, but you have no idea who sent it. Inside is a note claiming it’s a gift, but there’s no sender information. The note asks you to scan a QR code to discover who sent the package or to get return instructions. It may sound intriguing, but it could also be the opening act of a sca

News & Updates

Celebrate Data Privacy Day: Practical Tips and Solutions to Protect Your Identity

Did you ever stop to think that your digital identity is exposed on a daily basis—far more than your real-world identity? Every online account you create, every post you share, and every email you send leaves a trail of data that could be vulnerable to exploitation.

Data Privacy Day, observed annually on Jan. 28, is a powerful reminder of the importance of protecting this digital trail and taking ownership of your online privacy.

What Is Privacy and Why Does It Matter?

Privacy is the abili

Security

New VPN Backdoor

A newly discovered VPN backdoor uses some interesting tactics to avoid detection: When threat actors use backdoor malware to gain

News & Updates

Do We Really Need The OWASP NHI Top 10?

The Open Web Application Security Project has recently introduced a new Top 10 project – the Non-Human Identity (NHI) Top 10. For years, OWASP has provided security professionals and developers with essential guidance and actionable frameworks through its Top 10 projects, including the widely used API and Web Application security lists. 
Non-human identity security represents an emerging
Scroll to Top