Blog

APT Group Gamaredon Intensifies Cyber Offensive in Ukraine (Part 2)

Part 1: APT Group Gamaredon Intensifies Cyber Offensive in Ukraine (Part 1) Type 2: Send malicious HTML attachments by masquerading notification emails The second type of attack activity Gamaredon mainly carried out is spear phishing emails. This is a new attack process that emerged in the second quarter of this...

APT Group Gamaredon Intensifies Cyber Offensive in Ukraine (Part 1)

Overview Beginning in the second quarter of this year, NSFOCUS Security Labs discovered that the APT group Gamaredon began frequently using a number of different types of attacks to conduct cyberattacks against military and police targets in Ukraine’s Kherson, Donetsk and other regions. In this attack cycle, Gamaredon mainly used...

Linux Kernel Privilege Escalation Vulnerability (CVE-2022-2588) Notification

Overview Recently, NSFOCUS CERT detected that a researcher disclosed an EXP that exists in the Linux kernel privilege escalation vulnerability (CVE-2022-2588) on the Internet. Due to improper operation of the route4_filter linked list, there is a use-after-free vulnerability in the route4_change function of the net/schedule/cls_route.c filter. By exploiting this vulnerability,...

Description of the Server Name Indication Feature on NSFOCUS WAF

The early SSLv2 was designed based on the classic public key infrastructure. By default, a server or an IP address could provide only one service so that the server could know which certificate to serve during the SSL handshake. The widespread use of virtual hosts leads to the situation where...

Mind the Sec 2022

The 8th edition of Mind The Sec was held from September 20 to 22, 2022 at the Transamerica Expo, in São Paulo. it is one of the largest and most qualified corporate events of information security and cyber security in Latin America. Mind The Sec presents three tracks of content,...

NSFOCUS
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.