Author: Staff Writer

Avatar photo

John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.

Top Highlights Cyber Attacks Linked to Iran: An Iran-aligned hacking group, BladedFeline, is targeting Kurdish and Iraqi government officials, demonstrating a commitment to espionage within these regions since its inception in 2017. Advanced Malware Arsenal: BladedFeline employs various backdoors—including Shahmaran, Whisper, and Spearal—along with tools like PrimeCache to maintain persistent access to networks and exfiltrate sensitive data, showcasing sophisticated cyber capabilities. Strategic Objectives: The group’s activities indicate a strategic interest in Iraq’s political dynamics and its diplomatic relations with Western nations, suggesting attempts to undermine those influences. Suspected Entry Methods: Initial access to targeted systems likely exploited vulnerabilities in internet-facing…

Read More

Fortinet, the global cybersecurity leader driving the convergence of networking and security, announced enhancements to its data and productivity security portfolio, expanding FortiMail with the launch of the FortiMail Workspace Security suite. These new capabilities establish FortiMail as the broadest and most customizable email security platform and extend protection beyond email to include browser and collaboration security. These advancements, combined with new features in FortiDLP, Fortinet’s next-generation data loss prevention (DLP) and insider risk management solution, deliver a unified, AI-powered approach to safeguarding users and sensitive data across today’s dynamic work environments. “In today’s evolving threat landscape, securing user productivity and sensitive data requires a…

Read More

Top Highlights Funding Cuts Concern: Sean Cairncross, Trump’s nominee for national cyber director, faced scrutiny over proposed cuts of nearly $500 million to the Cybersecurity and Infrastructure Security Agency (CISA) amid rising cyber threats. Cyber Threats Amplify: Cairncross highlighted the increasing sophistication and frequency of cyberattacks, stressing the need for a strong U.S. response to impose costs on adversaries. Congressional Support Needed: Senators emphasized the necessity for ongoing funding and support for local cybersecurity initiatives, particularly in vulnerable sectors like healthcare. Advocacy for Cyber Legislation: Cairncross committed to collaborating with Congress on various cybersecurity bills, highlighting the importance of partnerships…

Read More

Summary Points Data Breach Impact: The Interlock ransomware gang claims to have stolen 941 GB of sensitive data from Kettering Health, including files like ID cards and financial reports. Cyberattack Response: Following a significant system outage caused by the cyberattack, Kettering Health managed to restore patient services and successfully launched its Epic electronic health record system. Ransom Payment Denied: Kettering Health did not comply with the extortion demands from Interlock, which resulted in the gang publishing the stolen data on their leak site. Enhanced Security Measures: In response to the attack, Kettering Health has eradicated the threat actors’ tools, patched…

Read More

A new type of wiper malware was used in a destructive cyberattack on a critical infrastructure organization in Ukraine.According to a report Thursday from Cisco Talos, the previously unknown malware, dubbed “PathWiper” by researchers, was observed in a recent attack on an unidentified organization. Cisco Talos attributed the attack to a Russia-nexus advanced persistent threat (APT) actor and warned that PathWiper posed significant risk to critical infrastructure organizations in Ukraine.”The continued evolution of wiper malware variants highlights the ongoing threat to Ukrainian critical infrastructure despite the longevity of the Russia-Ukraine war,” the researchers wrote in the blog post.A New Breed…

Read More

Sangfor Technologies, a global leader in cloud computing and cybersecurity, is thrilled to announce Sangfor Backup Platform (SBP) Powered by Veeam, the industry’s #1 backup and recovery solution. This platform combines Sangfor Hyper Converged Infrastructure (HCI) with Veeam’s cutting-edge technology, delivering advanced backupcapabilities that eliminate operational complexity, reduce costs, and safeguard critical workloads with unmatched efficiency. Sangfor Backup Platform, powered by Veeam, eliminates the need for resource-intensive backup agents, delivering a seamless experience that aligns with modern IT priorities. “Our collaboration with Veeam marks a pivotal step in redefining enterprise data protection,” said Darren Du, VP of Sangfor International Marketing Department. “By merging Sangfor…

Read More

Quick Takeaways A threat actor has re-released data from a 2021 AT&T breach affecting approximately 70 million customers, now linking Social Security numbers and birth dates directly to individual users. AT&T is investigating the situation, confirming that the data originates from the known breach and has been repackaged for sale on dark web forums. The leaked data, initially stolen in 2021 and now cleaned up, contains over 88 million lines, with 86 million unique records, including sensitive personal information such as phone numbers and encrypted Social Security numbers. This incident reiterates that the leak is not from a new data…

Read More

Barracuda Networks, Inc., a leading cybersecurity company providing complete protection against complex threats for all sized businesses, unveiled the BarracudaONE AI-powered cybersecurity platform. BarracudaONE maximizes threat protection and cyber resilience by unifying layered security defenses and providing deep, intelligent threat detection and response for managed service providers (MSPs), other channel partners and end users. Barracuda also announced the findings of a global survey highlighting the growing risk posed by security tool sprawl. According to the study conducted by Vanson Bourne, 65% of IT and security professionals say their organizations are juggling too many security tools. More than half (53%) of respondents also say their security tools…

Read More

Fast Facts State-sponsored Threat: Bitter, also known as APT-C-08 and TA397, is a state-backed hacking group linked to the Indian government, focusing on intelligence gathering primarily targeting South Asian entities and expanding into regions like Turkey and China. Sophisticated Techniques: The group employs diverse malware tools and sophisticated spear-phishing tactics, often masquerading as government entities to deploy malware via emails from compromised accounts or legitimate services like ProtonMail. Intelligence-Focused Operations: Bitter’s activities predominantly aim at governmental and diplomatic organizations to collect intelligence on foreign affairs, with a clear operational pattern aligning with Indian Standard Time. Advanced Malware Arsenal: Their toolkit…

Read More

Global data security leader Forcepoint announced the appointment of Matt Derdeyn as Chief Financial Officer. A seasoned finance executive with more than 20 years of experience in high-growth technology companies, Derdeyn joins Forcepoint’s executive team as the company scales adoption of its recently launched Data Security Cloud, a complete, AI-powered data security platform uniting visibility and control of data everywhere it’s created, stored or moved. “As enterprises look to adopt a more intelligent, adaptive approach to data security, Matt will help us scale our business and sharpen operational execution globally,” said Forcepoint CEO Ryan Windham. Cyber Technology Insights : Forcepoint Acquires Getvisibility for…

Read More