
In a major victory for international cybersecurity efforts, a coordinated law enforcement operation codenamed “MORPHEUS” has successfully disrupted a significant cybercrime infrastructure built around the penetration testing tool Cobalt Strike. Led by the United Kingdom’s National Crime Agency (NCA) in collaboration with authorities from Australia, Canada, Germany, the Netherlands, Poland, and the United States, the […]
Google has launched kvmCTF, a groundbreaking vulnerability reward program aimed at fortifying the security of the Kernel-based Virtual Machine (KVM) hypervisor. Announced in October 2023, kvmCTF offers substantial bounties of up to $250,000 for full VM escape exploits, underscoring its focus on zero-day vulnerabilities and rigorous evaluation standards. Designed to engage cybersecurity professionals, ethical hackers, […]
Cisco’s NX-OS zero-day vulnerability (CVE-2024-20399) has been actively exploited by the Chinese state-sponsored threat actor known as Velvet Ant, highlighting the urgent need for cybersecurity professionals and network administrators to secure affected systems. In a forensic investigation led by Sygnia, it was discovered that Velvet Ant gained administrator-level credentials to access Cisco Nexus switches and […]