Who’s Behind the 8Base Ransomware Website?

Credit to Author: BrianKrebs| Date: Tue, 19 Sep 2023 02:12:53 +0000

The victim shaming website operated by the cybercriminals behind 8Base — currently one of the more active ransomware groups — was until earlier today leaking quite a bit of information that the crime group probably did not intend to be made public. The leaked data suggests that at least some of website’s code was written by a 36-year-old programmer residing in the capital city of Moldova.

Read more

Malwarebytes named leader across six endpoint security categories, marking its ease of use, in G2 Fall 2023 results

Categories: Business

Malwarebytes is the only vendor recognized as “Easiest to Use” with the “Easiest Admin” for its EDR and MDR solutions in the recent G2 Fall 2023 results.

(Read more…)

The post Malwarebytes named leader across six endpoint security categories, marking its ease of use, in G2 Fall 2023 results appeared first on Malwarebytes Labs.

Read more

ThemeBleed exploit is another reason to patch Windows quickly

Categories: Exploits and vulnerabilities

Categories: News

Tags: theme

Tags: themepack

Tags: Microsoft

Tags: cve-2023-38146

Tags: msstyles

An exploit has been released for a vulnerability in .themes that was patched in the September 2023 Patch Tuesday update.

(Read more…)

The post ThemeBleed exploit is another reason to patch Windows quickly appeared first on Malwarebytes Labs.

Read more

Ransomware group steps up, issues statement over MGM Resorts compromise

Categories: Business

Tags: MGM Resorts

Tags: hotel

Tags: casino

Tags: ransomware

Tags: blackcap

Tags: ALPHV

We take a look at a ransomware group’s claims that they were the ones responsible for the MGM Resorts attack.

(Read more…)

The post Ransomware group steps up, issues statement over MGM Resorts compromise appeared first on Malwarebytes Labs.

Read more

Earth Lusca Employs New Linux Backdoor, Uses Cobalt Strike for Lateral Movement

Credit to Author: Joseph C Chen| Date: Mon, 18 Sep 2023 00:00:00 +0000

While monitoring Earth Lusca, we discovered an intriguing, encrypted file on the threat actor’s server — a Linux-based malware, which appears to originate from the open-source Windows backdoor Trochilus, which we’ve dubbed SprySOCKS due to its swift behavior and SOCKS implementation.

Read more

Europol lifts the lid on cybercrime tactics

Categories: News

Categories: Ransomware

Tags: Europol

Tags: Phishing

Tags: RDP

Tags: VPN

Tags: Exchange

Tags: LOTL

Tags: BEC

Tags: ransomware

Tags: IAB

Tags: crypter

Tags: Flubot

A Europol report discusses developments in cyberattacks, new methodologies, and threats as observed by Europol’s operational analysts.

(Read more…)

The post Europol lifts the lid on cybercrime tactics appeared first on Malwarebytes Labs.

Read more