Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2022-04-01 00:00:00 |
Fresh TOTOLINK Vulnerabilities Picked Up by Beastmode Mirai Campaign (lien direct) |
FortiGuard Labs analyzed fresh TOTOLINK vulnerabilities which the Beastmode Mirai-based DDoS campaign added to its arsenal. Read about how this threat leverages these vulnerabilities to control affected devices.
|
Threat
|
|
|
 |
2022-03-31 00:00:00 |
FortiEDR Blocks 100% of Attacks in MITRE Engenuity ATT&CK® Evaluation for the Second Year in a Row (lien direct) |
For the 2nd year in a row, FortiEDR blocks 100% of attacks in MITRE Engenuity® ATT&CK® Evaluation. Read to learn more.
|
|
|
|
 |
2022-03-30 00:00:00 |
New Milestones for Deep Panda: Log4Shell and Digitally Signed Fire Chili Rootkits (lien direct) |
FortiGuard Labs discovered a campaign by Deep Panda exploiting Log4Shell, along with a novel kernel rootkit signed with a stolen digital certificate also used by Winnti. Read to learn about these attacks, tools, and attribution to these APT groups.
|
|
APT 19
|
★★★★
|
 |
2022-03-30 00:00:00 |
Fortinet Named One of Only Two Leaders in 2022 IT/OT Security Platform Navigator™ Report (lien direct) |
Fortinet is pleased to announce that we have been recognized as a "Leader" in the 2022 IT/OT Security Platform Navigator™ report from Westlands Advisory. Read more about the IT/OT vendor report.
|
Guideline
|
|
|
 |
2022-03-29 00:00:00 |
Collaboration is Crucial to Combating Cybercrime (lien direct) |
Fortinet has spent the last few years collaborating with World Economic Forum's Partnership Against Cybercrime (PAC) to combat cybercrime worldwide. Read to find out more about this important work and its future initiatives.
|
|
|
|
 |
2022-03-28 00:00:00 |
Spoofed Invoice Used to Drop IcedID (lien direct) |
FortiGuard Labs discovered a spearphishing email for a Ukrainian fuel company with an attached invoice-seemingly from another fuel provider-that contains the IcedID Trojan. Read to learn more about the infection process and subsequent malware deployment by the threat actors behind IcedID.
|
Malware
Threat
|
|
|
 |
2022-03-25 00:00:00 |
Threat Landscape Insights for CISOs (lien direct) |
Actionable threat intelligence is important for CISOs to help plan defense strategies and actions. Read to learn about recent threat research trends to help focus cybersecurity priorities.
|
Threat
|
|
|
 |
2022-03-25 00:00:00 |
From the Shotgun Approach to Triple Extortion: The Evolving Ransomware Threat (lien direct) |
Although overall ransomware remains a top concern, there are proactive measures organizations of almost any size can, and should take, to minimize the risk of a ransomware incident. Read more.
|
Ransomware
Threat
|
|
|
 |
2022-03-23 00:00:00 |
Bad Actors Trying to Capitalize on Current Events via Shameless Email Scams (lien direct) |
FortiGuard Labs uncovered tax themed phishing scams. Read our blog to learn more about how to avoid these socially engineered lures this season and stay ahead of threat actors.
|
Threat
|
|
|
 |
2022-03-23 00:00:00 |
(Déjà vu) MS Office Files Involved Again in Recent Emotet Trojan Campaign – Part II (lien direct) |
FortiGuard Labs discovered more than 500 Microsoft Excel files involved in a campaign to deliver a fresh Emotet Trojan variant. Read part II of our analysis to learn more about malicious modules involved and how to avoid this lure.
|
|
|
|
 |
2022-03-23 00:00:00 |
Follow Your Passions to a Meaningful Career (lien direct) |
Cybersecurity can offer a rewarding career opportunity. Read more to learn about how to get started in cyber and what paths can lead to success.
|
Guideline
|
|
|
 |
2022-03-21 00:00:00 |
Securing Hybrid IT is a Reality, Embrace it with FortiGate NGFW (lien direct) |
In a hybrid network, security needs to be everywhere and able to adapt as the network it is protecting continually expands and adjusts to shifting business requirements. Read to learn more about how to achieve this.
|
|
|
|
 |
2022-03-21 00:00:00 |
From Medieval to Modern - a Zero Trust Story (lien direct) |
Read our blog to see how zero trust networking access solutions can be used to protect the modern workforce and how Fortinet ZTNA addresses customer use-cases.
|
|
|
|
 |
2022-03-17 00:00:00 |
Closing the Homework Gap Through the Emergency Connectivity Fund (lien direct) |
The Federal Communications Commission's Wireline Competition Bureau has extended the deadline for Emergency Connectivity Fund (ECF) awardees to spend their funding. Read more.
|
|
|
|
 |
2022-03-17 00:00:00 |
The Balancing Act of Financial Organizations to Compete in a Technology-Driven World (lien direct) |
The digital evolution of financial services organizations is critical to the future of banking. Read to learn how cybersecurity has a role to play as a competitive enabler.
|
|
|
|
 |
2022-03-16 00:00:00 |
2021 Fortinet Partner of the Year Award Winners (lien direct) |
Every year, Fortinet honors the most dedicated partners. Check out the list of winners from the 2021 Fortinet Partner of the Year Awards.
|
|
|
|
 |
2022-03-15 00:00:00 |
A Brief History of The Evolution of Malware (lien direct) |
FortiGuard Labs provides a brief historical insight into the history of computer malware from the pre-internet era to the current world of botnets, ransomware, viruses, worms, etc. Read to learn more.
|
Malware
|
|
|
 |
2022-03-11 00:00:00 |
Be Prepared for Social Engineering Scams This Tax Return Season (lien direct) |
Cybercriminals can be sophisticated in how they work to steal information, but there are steps that anybody can take to avoid falling victim to a social engineering scam, especially during tax return season. Learn more.
|
|
|
|
 |
2022-03-10 00:00:00 |
When It Comes to Ransomware, Don\'t Forget The Basics (lien direct) |
Ransomware is getting more destructive all the time and it has affected almost every industry and geography. The time to start protecting against ransomware is now. Learn how.
|
Ransomware
|
|
|
 |
2022-03-09 00:00:00 |
MSSPs vs. MDR: It\'s No Longer One or the Other (lien direct) |
Providing managed detection and response (MDR) services will play a vital role in MSSPs' ability to meet customer security demands going forward. Read more.
|
|
|
|
 |
2022-03-09 00:00:00 |
Department of Justice Collaboration Works to Disrupt Ransomware Ecosystems (lien direct) |
Recently the Department of Justice (DOJ) has had a few victories against ransomware operators showing good news fighting cybercrime. Read more to learn why this matters to your organization.
|
Ransomware
|
|
★★★★★
|
 |
2022-03-08 00:00:00 |
Break the Bias and Create a More Diverse and Inclusive Cybersecurity Workforce (lien direct) |
In the cybersecurity field, barriers and misperceptions remain which influence the belief that a career in cyber is not for women. Read to learn how to shift common perceptions.
|
|
|
|
 |
2022-03-07 00:00:00 |
Fake Purchase Order Used to Deliver Agent Tesla (lien direct) |
FortiGuard Labs discovered a phishing email addressed to a Ukrainian recipient that masqueraded as purchase order containing a PPT attachment aiming to deploy the Agent Tesla RAT. Learn more.
|
|
|
|
 |
2022-03-07 00:00:00 |
MS Office Files Involved Again in Recent Emotet Trojan Campaign – Part I (lien direct) |
FortiGuard Labs discovered more than 500 Microsoft Excel files involved in a campaign to deliver a fresh Emotet Trojan variant. Read to learn more how to avoid this lure.
|
|
|
|
 |
2022-03-03 00:00:00 |
Beyond Sightings, Across the Cybersecurity Landscape There Are Attacks Flows (lien direct) |
With the Attack Flow Project with MITRE, FortiGuard Labs and other Center participants aim to show how attacks are moving from left to right on the kill chain. This flow gives a view of where specific actions will take place so that IT leaders can better prioritize cyber defense.
|
Guideline
|
|
|
 |
2022-03-03 00:00:00 |
We All Have a Role to Play in Helping Find More Cybersecurity Workers in Education (lien direct) |
Learn how investing in talent can improve cybersecurity and avoid the costs involved with breaches, which can cripple education networks and technology.
|
|
|
|
 |
2022-03-02 00:00:00 |
Why Upgraded Infrastructure Needs Interoperability and Security (lien direct) |
Building and maintaining infrastructure is foundational to our society and these systems will be more secure and reliable when security is built in rather than bolted on as an afterthought. Learn more about how to build security-first.
|
|
|
|
 |
2022-03-01 00:00:00 |
The OT Threat Landscape in 2022 (lien direct) |
FortiGuard Labs' Derek Manky and Fortinet's operational technology CISO Rick Peters, offer their perspectives on current attack trends and how OT leaders can defend against them. Read more.
|
Threat
Guideline
|
|
|
 |
2022-02-28 00:00:00 |
MITRE Sightings Report Provides Guidance on Key Cyberattack Techniques (lien direct) |
The Sightings Report based on research run by MITRE CTID in collaboration with organizations such as FortiGuard Labs analyzes attacks and provides contextual, actionable threat intelligence. Read more about how this report can help.
|
Threat
|
|
|
 |
2022-02-25 00:00:00 |
The Hunt for the Lost Soul: Unraveling the Evolution of the SoulSearcher Malware (lien direct) |
FortiGuard Labs provides a deep analysis of the evolution of SoulSearcher malware focusing on a malicious DLL payload module. With reverse engineering the team analyzes the different components and the progression over time, mapping the evolution of the malware framework. Read more.
|
Malware
|
|
|
 |
2022-02-25 00:00:00 |
Industrial 5G Requires an Enhanced Security Model (lien direct) |
The game-changing benefits of 5G can only be realized if properly secured. Read to learn more.
|
|
|
|
 |
2022-02-24 00:00:00 |
Ukraine Crisis Cyber-Readiness Checklist (lien direct) |
Fortinet has assembled a readiness checklist focused on standard cyber hygiene and more to help in fighting against destructive cyber threats. Read to learn more.
|
|
|
|
 |
2022-02-24 00:00:00 |
Nobelium Returns to the Political World Stage (lien direct) |
FortiGuard Labs has discovered evidence that the Nobelium Group is impersonating someone associated with the Turkish embassy as a lure to introduce a Cobalt Strike beacon payload and gain access. Read our blog to learn more.
|
|
|
|
 |
2022-02-24 00:00:00 |
FortiMail Receives High Marks in ICSA Labs Testing (lien direct) |
Fortinet FortiMail received high marks in latest testing performed by independent testing firm, ICSA Labs. Read to find out more.
|
|
|
|
 |
2022-02-23 00:00:00 |
The Art of War (and Patch Management) (lien direct) |
Learn about developments coming with Fortinet's FortiCare and how the Security Rating Service will help regarding prioritizing patching and overall security.
|
Patching
|
|
|
 |
2022-02-23 00:00:00 |
FortiGuard Labs Reports Ransomware Relentless and More Destructive (lien direct) |
FortiGuard Labs' latest Global Threat Landscape Report reveals the increased sophistication, speed, and diversity of cyber attack techniques and the importance of strengthening the entire cyber kill chain.
|
Ransomware
Threat
|
|
|
 |
2022-02-22 00:00:00 |
Cybersecurity Mesh Architectures: Fortinet CISOs Discuss The Importance (lien direct) |
The expanding attack surface, increasingly sophisticated cyber threats, and network security complexity create challenges for organizations in virtually every industry. Fortinet Field CISOs discuss the importance of a cybersecurity mesh architecture approach. Learn more.
|
|
|
|
 |
2022-02-18 00:00:00 |
Not Everyone in Medicine is a Doctor; Not Everyone in Cybersecurity is a Coder (lien direct) |
The cybersecurity industry is often misrepresented and misunderstood. Don't let those common misconceptions hold others back from considering a career in cybersecurity. Read more.
|
|
|
|
 |
2022-02-16 00:00:00 |
Healthcare Services Provider Enhances Endpoint Protection with Managed Detection and Response from Fortinet (lien direct) |
Read about a healthcare services provider that chose Fortinet's Endpoint Detection and Response (EDR) solutions to secure endpoints and protect against ransomware.
|
|
|
|
 |
2022-02-16 00:00:00 |
Q&A: Ransomware Settlements and Cyber Insurance (lien direct) |
FortiGuard Labs' Derek Manky and Jim Richberg, Fortinet Field CISO for the Public Sector, offer their perspectives on ransomware trends, cyber insurance and settlements, and how organizations can better defend against attacks. Learn more.
|
Ransomware
|
|
|
 |
2022-02-15 00:00:00 |
Guard Your Drive from DriveGuard: Moses Staff Campaigns Against Israeli Organizations Span Several Months (lien direct) |
FortiGuard Labs identified a new campaign operated by threat actor Moses Staff. Read our blog to learn the TTPs used and about a new backdoor used to download files, execute payloads, and exfiltrate data from target networks.
|
Threat
|
|
|
 |
2022-02-15 00:00:00 |
Analysis of Microsoft CVE-2022-21907 (lien direct) |
Microsoft released a patch for CVE-2022-21907 as part of Microsoft's Patch Tuesday. In this blog, FortiGuard Labs researchers analyze the cause of the vulnerability and how attackers can exploit it.
|
Vulnerability
|
|
|
 |
2022-02-15 00:00:00 |
A Discussion on New Cyber Threats from Sports to Online Virtual Worlds (lien direct) |
Read about developing trends in the threat landscape to better plan for what may come next from cybercriminals. Learn more.
|
Threat
|
|
|
 |
2022-02-14 00:00:00 |
NFT Lure Used to Distribute BitRAT (lien direct) |
FortiGuard Labs researchers discovered an Excel file that uses NFT related information as a lure to download and install BitRAT malware. Read our blog to learn how the attack works.
|
|
|
|
 |
2022-02-14 00:00:00 |
The Need for a Zero Trust Edge Strategy (lien direct) |
Fortinet's Security-Driven Networking innovations deliver the industry's most complete Zero Trust Edge solution. Read about why a Zero Trust Edge strategy is important for organizations today.
|
|
|
|
 |
2022-02-14 00:00:00 |
7 Best Practices for Social Media Security and Privacy (lien direct) |
Social media enables organizations to interact, share information, and more. But, a lack of security can harm both individuals and organizations. Learn about cybersecurity best practices for social media and how to protect against threats.
|
|
|
|
 |
2022-02-10 00:00:00 |
Fortinet Security Researchers Discover Multiple Vulnerabilities in Adobe Illustrator & Photoshop (lien direct) |
Fortinet security researchers discovered and reported zero-day vulnerabilities in Adobe Illustrator & Photoshop. This Patch Tuesday Adobe released several security patches and fixes. Read more.
|
|
|
|
 |
2022-02-07 00:00:00 |
The Public Sector Threat Landscape in 2022 (lien direct) |
FortiGuard Labs' Derek Manky and Jim Richberg, Fortinet public sector CISO, offer their perspectives on the threat landscape the public sector is facing in 2022 and how they can defend against these threats. Read more.
|
Threat
|
|
|
 |
2022-02-04 00:00:00 |
Fortinet\'s Ken Xie Speaks About Growth, Securing WFA, and the Future of Cybersecurity (lien direct) |
Fortinet's Founder, Chairman, and CEO, Ken Xie offers his perspective on the cybersecurity industry, company momentum, and important customer trends going into 2022.
|
|
|
|
 |
2022-02-04 00:00:00 |
Smart Use of Technology Spurs Retail Reinvention (lien direct) |
If the pandemic has taught CISOs anything, it is that technology can be used to adapt and pivot to unexpected circumstances. Read about how this is particularly true in the retail sector.
|
|
|
|