CloudSEK’s Threat Research team conducted an investigation to understand the technical details of CVE-2022-44877, and the internet-wide exploitation of CentOS Web Panel 7 installations.
BeVigil has detected leaked Slack webhooks in one of the applications being monitored. Exposed webhooks can be leveraged to access sensitive data and also propagate phishing messages.
Category: Malware Intelligence Type/Family: Botnet Industry: Finance & Banking Region: Global Source*: C3 Executive Summary THREAT IMPACT MITIGATION Apollo OTP bot advertised on the cybercrime forum. Discord-based bot capable of making spoofed calls using Google Voice. Captured OTP can be used to bypass 2FA and gain complete access to bank accounts. Implement bot-detection technologies and […]
On August 2, 2023, CloudSEK's XVigil AI platform found a threat actor sharing iRAD's road safety database source code, a Government of India initiative, on a cybercrime forum.