[HackerNews] Microsoft Warns of FoggyWeb Malware Targeting Active Directory FS Servers

Microsoft on Monday revealed new malware deployed by the hacking group behind the SolarWinds supply chain attack last December to deliver additional payloads and steal sensitive information from Active Directory Federation Services (AD FS) servers.
The tech giant’s Threat Intelligence Center (MSTIC) codenamed the “passive and highly targeted backdoor” FoggyWeb, making it the threat actor tracked

Source: Read More (The Hacker News)

You might be interested in …

[SANS ISC] Obscure Wininet.dll Feature? , (Fri, Jan 21st)

All posts, Sans-ISC

The Internet Storm Center relies on a group of Handlers[1] who are volunteers and offer some free time to the community besides our daily job. Sometimes, we share information between us about an incident or a problem that we are facing and ask for help. Indeed, why not request some help from fellow Handlers with broad experience? […]

Read More

[TheRecord] Beware of North Korean IT workers with fake credentials, US government warns

Companies that hire freelance IT teleworkers could inadvertently be employing North Koreans who have been dispatched to generate revenue for the country’s authoritarian regime or gain access to corporate networks, the U.S. government said Monday. The workers “take advantage of existing demands for specific IT skills, such as software and mobile application development,” according to […]

Read More

[TheRecord] FBI document shows what data can be obtained from encrypted messaging apps

A recently discovered FBI training document shows that US law enforcement can gain limited access to the content of encrypted messages from secure messaging services like iMessage, Line, and WhatsApp, but not to messages sent via Signal, Telegram, Threema, Viber, WeChat, or Wickr. The document, obtained earlier this month following a FOIA request filed by Property of […]

Read More

Leave a Reply

Your email address will not be published.

This site uses Akismet to reduce spam. Learn how your comment data is processed.