Cyware Weekly Threat Intelligence - May 24–28

Weekly Threat Briefing • May 28, 2021
Weekly Threat Briefing • May 28, 2021
The Good
This section today is just like chicken soup for your cyber soul. Let's start with the security directive by DHS to pipeline companies that will assist their teams in reporting and mitigating threats to their networks. Kudos to the stakeholders for another step in the right direction. The underground cybercrime economy has been hit with yet another crackdown by French intelligence and law enforcement authorities who shut down the Le Monde Parallèle (The Parallel World) marketplace.
The Bad
Government entities are always lucrative targets for cybercriminals because of the sensitive nature of the data handled by them. This week, the Belgian Interior Ministry was found to have been hit by a cyberespionage campaign by foreign threat actors. It seems that even though we are not talking about the SolarWinds attacks anymore, the attackers behind it are working hard on making headlines. They went ahead and targeted 150 entities across the world. It is already established that exposed databases are one of the major cybersecurity concerns in today’s time. However, organizations need to step up their security game and not leave low-hanging fruits for cybercriminals.
New Threats
A novel data theft technique was discovered in 2015 which came to be known as Rowhammer. As chips are shrinking, Rowhammer attacks are getting harder to stop with another new attack technique discovered this week. We also witnessed the transformation of a wiper to malware. This new malware wants to make chaos and not money. In a new vulnerability discovery, Apple’s new M1 chips were found to be riddled with a new bug at the hardware level.