Weekly Threat Digest: December 16 – December 22, 2024
For a detailed threat digest, download the PDF file here
Summary
HiveForce Labs has identified a surge in cybersecurity threats, highlighting the increasing complexity and frequency of cyber incidents. Over the past week, four major attacks were detected, three critical vulnerabilities were actively exploited, and two threat groups were closely monitored, reflecting a relentless rise in malicious activities.
Thai government officials are under siege by advanced cyberattacks utilizing DLL side-loading techniques to deploy Yokai malware. Concurrently, the threat actor TA397 is focusing its efforts on organizations in the Turkish defense sector. This operation employs WmRAT and MiyaRAT in its attack chain, primarily for espionage purposes.
Adding to the urgency, Apache has disclosed a critical flaw (CVE-2024-53677) in its Apache Struts. This flaw allows remote attackers to execute arbitrary code, posing significant risks of critical data loss and full system compromise. These developments underscore the escalating sophistication of threat actors and the urgent need for advanced, proactive cybersecurity measures to combat evolving global threats.
Subscribe to receive our weekly threat digests and newsletters directly in your inbox.