Iran-linked Lyceum Group adds a new weapon to its arsenal. [Research Saturday]
CyberWire Daily6 Aug 2022

Iran-linked Lyceum Group adds a new weapon to its arsenal. [Research Saturday]

Deepen Desai from Zscaler's ThreatLabz joins Dave to discuss how APTs, like Lyceum Group, create tactics and malware to carry out attacks against their targets. The Lyceum group has been active since 2017 and is a state-sponsored Iranian APT group. This group targets Middle Eastern organizations most notably in the energy and telecommunication sectors, and they rely heavily on .NET based malwares. Zscaler said in their research they "recently observed a new campaign where the Lyceum Group was utilizing a newly developed and customized .NET based malware targeting the Middle East by copying the underlying code from an open source tool." They go on to give an analysis explaining why the .NET based DNS backdoor is causing problems. The research can be found here: Lyceum .NET DNS Backdoor

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(3709)

Claude outside the lines.

Claude outside the lines.

Anthropic says Claude escaped the sandbox three times, while a judge questions the Pentagon’s blacklist. The EU launches an AI enforcement team, the FTC targets a telehealth firm’s tracking pixels, an...

31 Jul 30min

Building a great firewall around AI.

Building a great firewall around AI.

China embraces open AI models, then worries it’s become a national security risk. The cyberattack on Minnesota water systems proves larger than first reported. CISA updates its SBOM guidance. AI super...

30 Jul 25min

More than meets the AI.

More than meets the AI.

The Senate confirms Jay Clayton to lead ODNI. A new CISA framework highlights critical infrastructure isolation capabilities. OpenAI’s rogue agent breached more than just Hugging Face. The average cos...

29 Jul 29min

You've been disconnected.

You've been disconnected.

A senator targets legacy VPNs. Minnesota water systems come under cyberattack. A 20-year-old flaw exposes 24,000 servers. Microsoft debuts its first cybersecurity AI model. A critical VeloCloud bug is...

28 Jul 26min

The world's least private hackers.

The world's least private hackers.

Hackers target Thailand’s Ministry of Finance with an autonomous AI agent.A new industry alliance hopes to improve AI security. Golden Chickens lay four new malware families. GitHub and PyPI introduce...

27 Jul 27min

How sovereign is Europe's space industry? [T-Minus: Space-Cyber Briefing]

How sovereign is Europe's space industry? [T-Minus: Space-Cyber Briefing]

As space becomes an increasingly important part of global communications, national security, and critical infrastructure, European governments are confronting a difficulty: How much control do they ne...

26 Jul 24min

Cold lures, hot targets. [Research Saturday]

Cold lures, hot targets. [Research Saturday]

This week, we are joined by Ondrej Kubovič, Security Awareness Specialist from ESET, discussing their work on "FrostyNeighbor: Fresh mischief and digital shenanigans." Ondrej walks us through ESET's l...

25 Jul 17min

Laundry Bear gets the spin cycle.

Laundry Bear gets the spin cycle.

Laundry Bear snuffles through unpatched Zimbra Collaboration servers. The State Department puts visa restrictions on cybercriminals. Oracle drops a record 1,449 security patches. Researchers disclose ...

24 Jul 26min

Populært innen Politikk og nyheter

giver-og-gjengen-vg
aftenpodden
forklart
stopp-verden
popradet
rss-gukild-johaug
hanna-de-heldige
rss-ness
aftenpodden-usa
det-store-bildet
nokon-ma-ga
dine-penger-pengeradet
fotballpodden-2
aftenbla-bla
e24-podden
rss-penger-polser-og-politikk
unitedno
amerikansk-politikk
lydartikler-fra-aftenposten
rss-utenrikskomiteen-med-bogen-og-grasvik