Latest News Articles



--- TLP:WHITE ---

News

− AeroBlade on the Hunt Targeting the U.S. Aerospace Industry

BlackBerry has uncovered a previously unknown threat actor targeting an aerospace organization in the United States, with the apparent goal of conducting commercial and competitive cyber espionage.

https://blogs.blackberry.com/en/2023/11/aeroblade-on-the-hunt-targeting-us-aerospace-industry

− Okta Customer Support Security Incident Update

Today Okta are sharing new information that potentially impacts the security of our customers. Okta have determined that the threat actor ran and downloaded a report that contained the names and email addresses of all Okta customer support system users.

https://sec.okta.com/harfiles

− The Week in Ransomware - Police hits ransomware affiliates operation

An international law enforcement operation claims to have dismantled a ransomware affiliate operation in Ukraine, which was responsible for attacks on organizations in 71 countries.

https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-december-1st-2023-police-hits-affiliates/

Vulnerabilities

− Active Exploitation of Unitronics PLCs

The NCSC is aware that Unitronics Programmable Logic Controllers (PLCs) which are used in some Water and Wastewater Systems are under active exploitation within Ireland.

https://www.ncsc.gov.ie/pdfs/2312010119_Unitronics.pdf

− Guidance for investigating attacks using CVE-2023-23397

Microsoft has identified a nation-state activity group tracked as Forest Blizzard, actively exploiting CVE-2023-23397 to provide secret, unauthorized access to email accounts within Exchange servers.

https://www.microsoft.com/en-us/security/blog/2023/03/24/guidance-for-investigating-attacks-using-cve-2023-23397/

Community News

− Google Unveils RETVec - Gmail's New Defense Against Spam and Malicious Emails

Google has revealed a new multilingual text vectorizer called RETVec (short for Resilient and Efficient Text Vectorizer) to help detect potentially harmful content such as spam and malicious emails in Gmail.

https://thehackernews.com/2023/11/google-unveils-retvec-gmails-new.html

--- TLP:WHITE ---