• Skip to primary navigation
  • Skip to main content
GreyKeep Security logo

GreyKeep Security

Expert security for an evolving digital age

  • Services
  • Our Approach
  • Blog
  • About
  • Contact Us
  • Show Search
Hide Search

News

MinIO Exploit Reveals Novel Cloud Attack Vector

greykeep · September 7, 2023 ·

MinIO logo on cloud background
Photo by Engin Akyurt

Researchers at Security Joes recently discovered threat actors leveraging critical vulnerabilities in MinIO to infiltrate a cloud network. According to the blog post, the attack represents a novel approach to compromising cloud assets using non-native solutions.

[Read more…] about MinIO Exploit Reveals Novel Cloud Attack Vector

FBI Takes Down Qakbot Botnet in “Duck Hunt”

greykeep · September 1, 2023 ·

Qakbot rubber ducky
Photo by Timothy Dykes

The FBI and Justice Department spearheaded an international law enforcement effort to dismantle the Qakbot botnet. The operation, codenamed “Operation Duck Hunt”, involved agencies from the United States, France, Germany, Latvia, the Netherlands, Romania, and the United Kingdom. Hailed as “the largest U.S.-led financial and technical disruption of a botnet infrastructure leveraged by cybercriminals,” the operation led to the seizure of $8.6 million in illicit cryptocurrency profits.

[Read more…] about FBI Takes Down Qakbot Botnet in “Duck Hunt”

Chinese Hackers Continue Espionage Campaign Despite Barracuda Remediation

greykeep · August 31, 2023 ·

Barracuda logo on black background

A suspected Chinese hacking group (tracked as UNC4841) continues to target compromised Barracuda appliances in government, high tech, and information technology sectors. The group originally targeted organizations worldwide by exploiting a zero-day vulnerability discovered in Barracuda Email Security Gateway (ESG). Mandiant initially detailed the 8-month-long espionage campaign in a blog post on June 15, 2023. The vulnerability, reported as CVE-2023-2868, allows for remote command execution on the target appliance while processing .tar files containing specially crafted file names.

[Read more…] about Chinese Hackers Continue Espionage Campaign Despite Barracuda Remediation

Cybersecurity Daily: August 30, 2023

greykeep · August 30, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for August 30, 2023.

Advisories

  • VMware Aria vulnerable to critical SSH authentication bypass flaw
  • Threat actors started exploiting Juniper flaws shortly after PoC release
  • Hacking campaign bruteforces Cisco VPNs to breach networks
  • High-Severity Memory Corruption Vulnerabilities Patched in Firefox, Chrome
  • Unpatched Citrix NetScaler Devices Targeted by Ransomware Group FIN8
  • DreamBus malware exploits RocketMQ flaw to infect servers
  • Roblox and Rust Developers Targeted With Malicious Packages
  • China-Linked BadBazaar Android Spyware Targeting Signal and Telegram Users
  • Threat Actors Abuse Google Groups to Send Fake order Notifications
  • Attackers can discover IP address by sending a link over the Skype mobile app
  • BGP Flaw Can Be Exploited for Prolonged Internet Outages
[Read more…] about Cybersecurity Daily: August 30, 2023

Weekly Malware Roundup – August 29, 2023

greykeep · August 29, 2023 ·

GreyKeep Security Malware Roundup

This is the GreyKeep Security Malware Roundup for August 29, 2023. Here’s a summary of what’s in this week’s edition:

Targets

MacOS
Adobe ColdFusion
MOVEit Transfer
WinRAR
Openfire XMPP
Ivanti Sentry
Roblox
Juniper SRX
Cisco Nexus 3000/9000 (NX-OS)
Citrix NetScaler
Barracuda ESG
EsafeNet Cobra DocGuard
IoT devices

Organizations

U.S. government
Rust developers
Roblox developers
Taiwan
Hong Kong
Metropolitan Police Service
[Read more…] about Weekly Malware Roundup – August 29, 2023
  • « Go to Previous Page
  • Page 1
  • Page 2
  • Page 3
  • Page 4
  • Page 5
  • Page 6
  • Interim pages omitted …
  • Page 8
  • Go to Next Page »

How can we help you become more secure? Contact Us

GreyKeep Security

© 2025 GreyKeep Security LLC · All Rights Reserved

  • Services
  • Our Approach
  • GreyKeep Security Blog
  • About Us
  • Contact Us