Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Kaspersky KATA detects network anomalies like Kerberoasting and DNS tunneling that are indistinguishable from legitimate traffic.
Kaspersky explains that attackers often use standard domain protocols like Kerberos and DNS tunneling to blend in with legitimate traffic. Traditional network security tools struggle because these attacks lack distinct indicators.
Attackers increasingly exploit standard domain protocols like Kerberos and DNS to evade detection, as these activities blend with legitimate traffic. Kaspersky highlights techniques like Kerberoasting (abusing Kerberos to steal service account credentials) and DNS tunneling (covert data exfiltration via DNS queries), which bypass traditional signature-based tools.
Unit 42's analysis of XCSSET v40 reveals macOS malware that targets developers via Xcode. The researchers employed advanced pattern matching and AI to decode its logic.
Analysis of XCSSET v40 reveals a macOS malware targeting developers via Xcode. Unit 42 employed advanced pattern matching and AI to decode its logic.
Unit 42's deep dive into XCSSET v40 reveals macOS malware that targets developers through Xcode. Analysts used advanced pattern matching and AI to decode the malware's logic.