WEEKLY TOP TEN | APRIL 21, 2023 16:29 GMT
Our Threat Operations and Intelligence team compiles a daily digest of new cybersecurity threats from around the Internet. This top 10 has been culled from the 40+ unique stories we found relevant over the week, ranked by highest risk:
- Fortra shares findings on GoAnywhere MFT zero-day attacks
https://www.bleepingcomputer.com/news/security/fortra-shares-findings-on-goanywhere-mft-zero-day-attacks/ - Google Chrome Hit by Second Zero-Day Attack – Urgent Patch Update Released
https://thehackernews.com/2023/04/google-chrome-hit-by-second-zero-day.html - Breaking Docker Named Pipes SYSTEMatically: Docker Desktop Privilege Escalation – Part 2
https://www.cyberark.com/resources/threat-research-blog/breaking-docker-named-pipes-systematically-docker-desktop-privilege-escalation-part-2 - Goldoson Android Malware Infects Over 100 Million Google Play Store Downloads
https://thehackernews.com/2023/04/goldoson-android-malware-infects-over.html - LockBit ransomware encryptors found targeting Mac devices
https://www.bleepingcomputer.com/news/security/lockbit-ransomware-encryptors-found-targeting-mac-devices/ - Ransomware gangs abuse Process Explorer driver to kill security software
https://www.bleepingcomputer.com/news/security/ransomware-gangs-abuse-process-explorer-driver-to-kill-security-software/ - Microsoft SQL servers hacked to deploy Trigona ransomware
https://www.bleepingcomputer.com/news/security/microsoft-sql-servers-hacked-to-deploy-trigona-ransomware/ - CrossLock Ransomware Emerges: New GoLang-Based Malware On the Horizon
https://blog.cyble.com/2023/04/18/crosslock-ransomware-emerges-new-golang-based-malware-on-the-horizon/ - Blind Eagle Cyber Espionage Group Strikes Again: New Attack Chain Uncovered
https://thehackernews.com/2023/04/blind-eagle-cyber-espionage-group.html - YouTube Videos Distributing Aurora Stealer Malware via Highly Evasive Loader
https://thehackernews.com/2023/04/youtube-videos-distributing-aurora.html