Cyware Monthly Threat Intelligence

Monthly Threat Briefing • December 2, 2020
Monthly Threat Briefing • December 2, 2020
The Good
Cybersecurity experts are constantly seeking innovative solutions to keep them ahead of threats and address various challenges. Last month, a research group devised a new and advanced IDS/IPS system that inspects internet traffic for malicious activities. In other news, experts discovered a way to authenticate and optimize DNS traffic on the client-side of the domain-name resolution process. Meanwhile, the U.S. Congress passed a significant cybersecurity bill concerning the safety of 5G wireless networks.
The Bad
With the arrival of the holiday season, cybercriminals have doubled up their efforts into making life tough for organizations and users. For instance, attackers compromised Peatix, an event organizing platform, and leaked the personal data of over 4.2 million registered users. In another vein, Campari Group was blackmailed by criminals by running Facebook ads about the 2TB of stolen data. In addition, bitcoin hackers swindled about $20 million from DeFi protocol Pickle Finance.
New Threats
Cyber experts highlighted some trending threats from November. They marked the resurgence of TrickBot malware with the release of its 100th version. Moreover, there was a new multistage infostealer malware strain detected during an attack on the MercadoLivre, an Argentinian e-commerce platform. Adding to the woes, an attacker leaked Fortinet VPN credentials of about 50,000 devices installed at government offices and banks.