article thumbnail

Spy groups hack into companies using zero-day flaw in Pulse Secure VPN

CSO Magazine

Over the past few months, several cyberespionage groups, including one believed to be tied to the Chinese government, have been breaking into the networks of organizations from the United States and Europe by exploiting vulnerabilities in VPN appliances from zero-trust access provider Pulse Secure. Sign up for CSO newsletters. ]. .

VPN 98
article thumbnail

Researchers show techniques for malware persistence on F5 and Citrix load balancers

CSO Magazine

Over the past several years, hackers have targeted public-facing network devices such as routers, VPN concentrators, and load balancers to gain a foothold into corporate networks.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Attackers deploy sophisticated Linux implant on Fortinet network security devices

CSO Magazine

This week, after additional analysis, the company released more details about a sophisticated malware implant that those attackers deployed through the flaw. Remote code execution in FortiOS SSL-VPN. Based on currently available information, the original zero-day attack was highly targeted to government-related entities.

article thumbnail

BrandPost: Using TLS to Avoid Detection is On the Rise

CSO Magazine

New research from Sophos finds 46% of malware communicating with a remote system over the Internet is utilizing TLS encryption to conceal communications and evade detection. That is more than a 100% increase in TLS-based malware communications compared to 23% in 2020, according to Sophos telemetry analysis.

VPN 86
article thumbnail

BrandPost: 7 Key Considerations Before Purchasing a SASE Solution

CSO Magazine

Consequently, when the pandemic forced many to suddenly shift to working out of home offices and other off-site locations, a spike in malware , particularly ransomware , was experienced worldwide. These malicious hackers were then able to infiltrate networks by hijacking encrypted VPN tunnels.

VPN 63
article thumbnail

Security Roundup October 2023

BH Consulting

Ransomware an ongoing threat to industry as crime gangs organise Malware-based cyber-attacks are the most prominent threat to industry, Europol says. A companion to Europol’s IOCTA 2023 report , it digs deeper into malware – ransomware in particular – and DDoS attacks. MORE Have you signed up to our monthly newsletter?

article thumbnail

Pulse Secure: New Deadline for Government to Patch

SecureWorld News

Mandiant is currently tracking 12 malware families associated with the exploitation of Pulse Secure VPN devices. FireEye says the malware families allow attackers to do things like execute MFA bypass attacks, elevate privileges, and install backdoors. Who is taking advantage of the Pulse Connect Secure vulnerabilities?