Security News > 2021

ARMO raises $4.5M to expand its go-to-market efforts and commercial offering of its technology
2021-01-28 00:15

The company plans to use the funds to expand its go-to-market efforts and commercial offering of its technology. ARMO Workload Fabric provides DevOps teams with a new approach to cloud-native workload and application deployment that infuse inherent security and visibility into applications, and creates a virtual control plane that can be easily deployed in any cloud-native environment.

Group-IB granted Innovation Excellence award for its Digital Risk Protection
2021-01-28 00:00

Group-IB was granted Innovation Excellence award for its Digital Risk Protection, an Al-driven platform for identifying and mitigating digital risks and counteracting brand impersonation attacks with the company's patented technologies at its core. The key parameters independently analyzed by Frost & Sullivan in its "Frost Radar: European Digital Risk Protection Market, 2020" among others included innovation stability, R&D, mega trends leverage, growth pipeline, vision and strategy, revenue growth, and market share growth.

CloudSphere appoints Jane Gilson as CEO
2021-01-27 23:30

CloudSphere announced the appointment of Jane Gilson as the company's CEO successor to Patrick McNally. In her role, Gilson will leverage her extensive international experience, her background with Software as a Service models and her understanding of cloud customer needs to help CloudSphere scale to the next level as demand for the platform increases.

Arrest, Seizures Tied to Netwalker Ransomware
2021-01-27 22:42

U.S. and Bulgarian authorities this week seized the darkweb site used by the NetWalker ransomware cybercrime group to publish data stolen from its victims. NetWalker is a ransomware-as-a-service crimeware product in which affiliates rent access to the continuously updated malware code in exchange for a percentage of any funds extorted from victims.

TeamTNT Cloaks Malware With Open-Source Tool
2021-01-27 21:43

The TeamTNT threat group has added a new detection-evasion tool to its arsenal, helping its cryptomining malware skirt by defense teams. The new tool is delivered within a base64-encoded script, hidden in the TeamTNT cryptominer binary, or via its Internet Relay Chat bot, called TNTbotinger, which is capable of distributed denial of service attacks.

NetWalker Ransomware’s Sites Seized by Law Enforcement
2021-01-27 21:21

Law enforcement authorities in the U.S. and Europe have seized the dark web sites associated with the NetWalker ransomware operations and also charged a Canadian national in relation to the malware. In July, the FBI warned of NetWalker attacks targeting government organizations.

NetWalker Ransomware Suspect Charged: Tor Site Seized
2021-01-27 21:08

UPDATE. Hot on the heels of the Emotet takedown announced Wednesday, the NetWalker ransomware has also been partially disrupted by an international police action. The Department of Justice said Wednesday that it has brought charges "Against a Canadian national in relation to NetWalker ransomware attacks," while also seizing around $454,500 in cryptocurrency from ransom payments made by three separate victims.

Microsoft rolls out Application Guard for Office to all customers
2021-01-27 20:40

Microsoft has announced that Application Guard for Office is now generally available for all Microsoft 365 users with supported licenses. Application Guard for Office was launched in limited preview in November 2019 and it is only available to organizations that have Microsoft 365 E5 or Microsoft 365 E5 Security licenses.

US charges NetWalker ransomware affiliate, seizes ransom payments
2021-01-27 20:32

The U.S. Justice Department announced today the disruption of the Netwalker ransomware operation and the indictment of a Canadian national for alleged involvement in the file-encrypting extortion attacks. Earlier today, BleepingComputer reported that law enforcement in the U.S. and Bulgaria seized Netwalker sites on the dark web used for leaking data from non-paying victims and for negotiating payments for data decryption.

Remote Attackers Can Now Reach Protected Network Devices via NAT Slipstreaming
2021-01-27 20:32

Disconnecting devices from the internet is no longer a solid plan for protecting them from remote attackers. A new version of a known network-address translation slipstreaming attack has been uncovered, which would allow remote attackers to reach multiple internal network devices, even if those devices don't have access to the internet.