(17/12/23) Blog 351 – Sandman APT deploy Lua-based malware

SentinelLabs, Microsoft, and PwC threat intelligence researchers have provided attribution-relevant information on the relatively unknown Sandman APT. The report which was released on the 11th December details a link between the Sandman APT and Chinese threat actors who use the KEYPLUG backdoor. The Chinese threat actor is tracked by Microsoft as STORM-0866/Red […]

Continue Reading

(15/12/23) Blog 349 – Joint security advisory released for JetBrains TeamCity CVE – targeted by Fancy Bear

A joint cybersecurity advisory has been released by the FBI, CISA, NSA, SKW, CERT.PL, and NCSC-UK which covers the Russian Foreign Intelligence Service (SVR) actively exploiting a vulnerability in the TeamCity software collaboration tool. The advisory which was released on Wednesday (13th) details the activities conducted by the SVR – […]

Continue Reading

(14/12/23) Blog 348 – Europes 2nd largest semiconductor manufacturer compromised for over 2 years

NXP, the Europes 2nd largest semiconductor company has been compromised by Chinese threat actors for over 2 years according to Fox-IT security. NXP is Europe’s second-biggest semiconductor company behind ASML and the world’s 18th largest chipmaker by market capitalisation. The companies chips are used in iPhones and Apple watches to […]

Continue Reading