Security News

A threat actor with potential links to an Indian cybersecurity company has been nothing if remarkably persistent in its attacks against military organizations based in South Asia, including Bangladesh, Nepal, and Sri Lanka, since at least September 2020 by deploying different variants of its bespoke malware framework. Slovak cybersecurity firm ESET attributed the highly targeted attack to a hacking group known as Donot Team.

Attackers targeting telcos across the Middle East and Asia for the past six months are linked to Iranian state-sponsored hackers, according to researchers. Though the identity of attackers also is unconfirmed, they potentially could be linked to the Iranian group Seedworm, aka MuddyWater or TEMP.Zagros, researchers said.

HID Global announced that it has acquired Omni-ID, a manufacturer of RFID tags and industrial IoT hardware devices for passive and active tagging, tracking, monitoring and alerting applications. "I am very pleased to welcome Omni-ID into the ASSA ABLOY Group and HID," said Björn Lidefelt, EVP and Head of HID Global.

Security researchers at Kaspersky have identified a widespread cyberespionage campaign that targets government offices in Asia; the cybersecurity attack starts with a spearphishing email. Kaspersky analysts explained the LuminousMoth attack on the SecureList blog and suggested that the lopsided numbers between the two countries could be due to an additional and unknown infection vector used only in the Philippines.

Securonix announced it has opened its office in Tokyo, Japan, and will be offering a local Securonix Cloud pod in the region. As its platform gains rapid traction among global organizations, this investment in the Asia-Pacific region will enable Securonix to enhance its support for new and existing customers in Japan.

Based in Singapore, Lee will scale the business in the region, expand into key growth markets, and develop new strategic initiatives. "George brings an extensive track record of developing high-performing teams and a portfolio of experience that will help our channel partners and customers reimagine their new next," says Paul Loftus, Chief Revenue Officer, Imperva.

Parallel Wireless is been selected by Axiata Group Berhad as a strategic partner providing O-RAN networks for the group's digital telcos across Southeast Asia and South Asia, enabling both 2G and 4G broadband connectivity. Headquartered in Malaysia, Axiata is one of the leading Mobile Network Operators in Asia operating digital telcos, digital businesses and infrastructure with a vision to be the Next Generation Digital Champion by 2024.

The infection chain works by sending decoy documents, impersonating other entities within the government, to multiple members of the Ministry of Foreign Affairs, which, when opened, retrieves a next-stage payload from the attacker's server that contains an encrypted downloader. The use of weaponized copies of legitimate-looking official documents also suggests that "The attackers first had to attack another department within the targeted state, stealing and weaponizing documents for use against the Ministry of Foreign Affairs," said Lotem Finkelstein, head of threat intelligence at Check Point.

The council is set to meet virtually on a quarterly basis to maintain a continuous exchange of information on cyber threats and cybersecurity solutions. Which is why the Asia Pacific Public Sector Cyber Security Executive Council couldn't have come at a more critical time, where the stakeholders in the ecosystem can collaborate on prioritizing national cybersecurity defense.

France-based insurance giant AXA has confirmed that some of its operations in Asia have been impacted by a ransomware attack. A cybercrime gang that uses a piece of ransomware named Avaddon appears to be behind the attack.