Security news that informs and inspires

2230 articles by

Decipher Podcast: Source Code 4/19

Welcome back to the Source Code podcast, Decipher’s weekly news wrap podcast with input from our sources.

Source Code

A Decade of Sandworm: Digging into APT44’s Past and Future

Decipher’s Lindsey O’Donnell-Welch and Mandiant analysts Dan Black and Gabby Roncone reflect on the most pivotal moments from Sandworm over the last decade, from NotPetya to the Ukraine electric power grid attacks.

APT, Video

OpenMetadata Bugs Enable Kubernetes Cryptomining Attacks

Threat actors have been exploiting known vulnerabilities in open-source platform OpenMetadata in order to access Kubernetes workloads and use them for cryptomining.

Kubernetes

UK Police Take Down LabHost Phishing Service

Europol and a collection of UK law enforcement agencies have disrupted the LabHost phishing platform, which targeted victims globally.

Ransomware, Labhost

Phishing Attack Targets LastPass Users’ Master Passwords

In order to convince LastPass users to hand over their passwords, attackers used a mix of phone calls, phishing emails and a phishing page under the domain “help-lastpass[.]com,” which has since been taken down.

Phishing