Cyware Monthly Threat Intelligence

Monthly Threat Briefing • December 1, 2022
Monthly Threat Briefing • December 1, 2022
Looking at the ongoing worldwide cyber fiascos, innovation and research are right now the need of the hour. Significant progress has been observed toward enhancing the security of mobile phones and other cloud-based services in form of a new cryptographic tool at the Crypto ‘08 conference. The healthcare sector, especially, has been continually facing a barrage of cyberattacks. The Food and Drug Administration and MITRE jointly rolled out a new response playbook against security incidents involving key medical devices.
Network intrusions and data exposure incidents are the manifestations of insufficient cyber readiness of organizations and individuals alike. For example, customers of online sports betting firm DraftKings suffered a wave of credential stuffing attacks. In another story, the new BEC scammer group Crimson Kingsnake impersonated well-known international law firms. Researchers attributed 92 domains to the threat actor group. In another update, experts also took the wraps off the OPERA1ER threat group that milked at least $11 million in nearly 30 attacks in Africa.
While Emotet botnet made a comeback after a hiatus of four months, other botnets RapperBot and Cloud9 also made a fresh entry into the cyber landscape. Moreover, the infamous Lazarus experimented with a new version of DTrack malware last month and used it as an important asset in its operations. Critical infrastructure in Ukraine, East Asia, and Southeast Asia also came under major threat by Chinese APT group Earth Longzhi which has been shooting spear-phishing emails.