A CISA report finds multiple government hacking groups had “long-term” access to the network of a defense company using open-source Python toolkit Impacket (Suzanne Smalley/CyberScoop)

Suzanne Smalley / CyberScoop:
A CISA report finds multiple government hacking groups had “long-term” access to the network of a defense company using open-source Python toolkit Impacket  —  U.S. cybersecurity, law enforcement and intelligence officials revealed on Tuesday that sophisticated hackers infiltrated …

Related Articles

Insurance giant Zurich’s $100M+ settlement to cover losses suffered by Mondelez International from NotPetya may reshape the entire cyber insurance marketplace (Suzanne Smalley/CyberScoop)

Suzanne Smalley / CyberScoop:
Insurance giant Zurich’s $100M+ settlement to cover losses suffered by Mondelez International from NotPetya may reshape the entire cyber insurance marketplace  —  The settlement last week in a $100 million lawsuit over whether insurance giant Zurich should cover losses Mondelez International suffered …

Overview of Xi Jinping’s efforts to bolster China’s hacking teams, already skilled in espionage, by focusing on cultivating talent and funding security research (Dakota Cary/CyberScoop)

Dakota Cary / CyberScoop:
Overview of Xi Jinping’s efforts to bolster China’s hacking teams, already skilled in espionage, by focusing on cultivating talent and funding security research  —  From the early 2000s to 2015, China’s hacking teams caused havoc for private companies and U.S. and allied governments.

A Python directory traversal vulnerability disclosed in August 2007, but never patched, likely affects 350K+ open-source projects and can lead to code execution (Ionut Ilascu/BleepingComputer)

Ionut Ilascu / BleepingComputer:
A Python directory traversal vulnerability disclosed in August 2007, but never patched, likely affects 350K+ open-source projects and can lead to code execution  —  A vulnerability in the Python programming language that has been overlooked for 15 years is now back in the spotlight …

The FBI and CISA say an Iranian-backed threat group hacked a US Federal Civilian Executive Branch and deployed XMRig cryptomining malware via the Log4Shell flaw (Sergiu Gatlan/BleepingComputer)

Sergiu Gatlan / BleepingComputer:
The FBI and CISA say an Iranian-backed threat group hacked a US Federal Civilian Executive Branch and deployed XMRig cryptomining malware via the Log4Shell flaw  —  The FBI and CISA revealed in a joint advisory published today that an unnamed Iranian-backed threat group hacked …

In its Q3 Adversarial Threat Report, Meta attributes a pro-US campaign to US military-run phony Facebook accounts, Pages, Groups, and Instagram accounts (AJ Vicens/CyberScoop)

AJ Vicens / CyberScoop:
In its Q3 Adversarial Threat Report, Meta attributes a pro-US campaign to US military-run phony Facebook accounts, Pages, Groups, and Instagram accounts  —  People associated with the U.S. military were behind dozens of phony Facebook accounts, more than a dozen pages, a pair of groups …

Some ex-staff say Patreon laid off its entire security team this week, raising concerns among users, but Patreon says the layoffs will not impact its security (Tonya Riley/CyberScoop)

Tonya Riley / CyberScoop:
Some ex-staff say Patreon laid off its entire security team this week, raising concerns among users, but Patreon says the layoffs will not impact its security  —  Patreon laid off its security team this week, according to several former employees, sparking cybersecurity concerns among users …