Cyware Weekly Threat Intelligence, November 02 - 06, 2020

Weekly Threat Briefing • November 6, 2020
Weekly Threat Briefing • November 6, 2020
The Good
With another week coming to an end, let’s take a quick look at the positive developments that occurred in the cyber ecosystem. The CERT/CC launched a new Twitter bot called Vulnonym to assign random names to security bugs receiving a CVE identifier. Meanwhile, the sophisticated Maze ransomware shut down its operations permanently, putting a full stop to all its malicious activities.
The Bad
Besides, the week witnessed some major data breaches affecting millions of user records. The ShinyHunters threat actor dumped 5.22GB data of Mashable on a hacker forum. In another incident, a threat actor sold a total of 34 million user records from 17 different companies. Eatigo also suffered a mass data leak after attackers offered 2.8 million user accounts for sale online.
New Threats
Several new activities were also observed from different threat actor groups, this week. REvil ransomware gang claimed to have acquired the source code of the KPOT information stealer trojan for $6,500. A new threat actor group called UNC1945 actively exploited a zero-day vulnerability in Oracle Solaris operating system to gain access to corporate networks. Furthermore, security researchers uncovered more tools associated with the North Korea-linked Kimsuky threat actor group.