December 24, 2024

Weekly Threat Digest: December 16 – December 22, 2024

For a detailed threat digest, download the PDF file here


Summary

HiveForce Labs has identified a surge in cybersecurity threats, highlighting the increasing complexity and frequency of cyber incidents. Over the past week, four major attacks were detected, three critical vulnerabilities were actively exploited, and two threat groups were closely monitored, reflecting a relentless rise in malicious activities.

Thai government officials are under siege by advanced cyberattacks utilizing DLL side-loading techniques to deploy Yokai malware. Concurrently, the threat actor TA397 is focusing its efforts on organizations in the Turkish defense sector. This operation employs WmRAT and MiyaRAT in its attack chain, primarily for espionage purposes.

Adding to the urgency, Apache has disclosed a critical flaw (CVE-2024-53677) in its Apache Struts. This flaw allows remote attackers to execute arbitrary code, posing significant risks of critical data loss and full system compromise. These developments underscore the escalating sophistication of threat actors and the urgent need for advanced, proactive cybersecurity measures to combat evolving global threats.

Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo