Security News > 2023 > July > Go Beyond the Headlines for Deeper Dives into the Cybercriminal Underground

Go Beyond the Headlines for Deeper Dives into the Cybercriminal Underground
2023-07-18 10:54

Discover stories about threat actors' latest tactics, techniques, and procedures from Cybersixgill's threat experts each month.

Each story brings you details on emerging underground threats, the threat actors involved, and how you can take action to mitigate risks.

Our threat experts observed the group boasting about the Microsoft attack on the underground, in addition to an ally announcing a new pro-Russian coalition that plans to attack the European banking system.

Our threat research team observed the malware's developers touting its features on the underground, in addition to threat actors questioning the stealer's capabilities.

VMware recently released an advisory related to a critical remote code execution vulnerability, warning that threat actors are already exploiting the flaw in attacks.

Ultimately, threat actors could leverage CVE-2023-20887 to access networks and inject malicious commands into Aria Operations for Networks, which could lead to data theft, data corruption, or even complete system compromise.


News URL

https://thehackernews.com/2023/07/go-beyond-headlines-for-deeper-dives.html

Related Vulnerability

DATE CVE VULNERABILITY TITLE RISK
2023-06-07 CVE-2023-20887 Command Injection vulnerability in VMWare Aria Operations for Networks
Aria Operations for Networks contains a command injection vulnerability.
network
low complexity
vmware CWE-77
critical
9.8