Security8

Security8

TA505 and Cl0p Ransomware

TA505 is a sophisticated cybercrime group active since at least 2014. It is primarily known for large-scale phishing campaigns and the deployment of advanced malware. Among its most notorious creations is the Cl0p ransomware—first observed in 2019—which has become a…

Overview of the Attack “Big Game Hunting”

A hacking group known as “Big Game Hunting” is reportedly impersonating Microsoft employees (particularly those from the Microsoft Outlook department) and contacting staff at large organizations via voice phishing (vishing). The attackers: Call employees and claim to be from Microsoft,…

The Rise of AI in Cybersecurity: Opportunities and Threats

The rapid advancement of artificial intelligence (AI) has revolutionized multiple industries, including cybersecurity. AI-powered models such as OpenAI’s ChatGPT and DeepSeek have showcased immense potential in areas like automation, threat detection, and data analysis. However, these same technologies have also…

Mitigating SSH Tunneling Attacks on VMware ESXi Servers

SSH tunneling, also known as SSH port forwarding, has become a critical technique leveraged by threat actors to exfiltrate data and maintain persistent access to compromised systems. Recently, attackers have been targeting VMware ESXi servers, exploiting vulnerabilities and misconfigurations to…

Understanding the Zero-Day Vulnerability (CVE-2025-24085)

Apple Releases Emergency Security Patch for Zero-Day Vulnerability Affecting Multiple Devices Apple has recently rolled out urgent security updates to patch a newly discovered zero-day vulnerability affecting a wide range of its products, including iOS, iPadOS, macOS, watchOS, and tvOS.…