Authored By: Threat Intelligence Team – CMC Telecom TLP:CLEAR I/ Executive Summary Emerging in 2023, Dark Angels ransomware is a sophisticated threat believed to have been derived from the leaked Babuk source code. It has since evolved into a highly active and versatile ransomware strain, capable of targeting multiple platforms, including Windows, Linux/ESXi environments. This adaptability makes it particularly dangerous for enterprises with heterogeneous systems. Upon execution, the ransomware begins by performing comprehensive system enumeration, gathering information on processes, services, …
Author: Cyber Sec
A new cyber campaign has been discovered, targeting Fortinet FortiGate firewall devices with exposed management interfaces. The attackers are believed to have exploited a potential zero-day vulnerability to gain unauthorized access to these devices. Key points about the campaign: Exploitation of Exposed Interfaces: The attackers focused on firewalls with publicly exposed management interfaces, performing unauthorized administrative logins. They modified configurations, created new user accounts, and used SSL VPN authentication to access the devices. Unknown Initial Access Vector: The exact method of initial …
Social Profiles