December 31, 2024

Weekly Threat Digest: December 23 – December 29, 2024

For a detailed threat digest, download the PDF file here


Summary

HiveForce Labs has recently made significant advancements in identifying cybersecurity threats. Over the past week, detected eight attacks, reported two vulnerabilities, and identified two active adversaries. These findings underscore the relentless and escalating danger of cyber intrusions.

Additionally, Cloud Atlas, a cyber threat group, has deployed a new toolset using phishing emails to exploit known vulnerabilities (CVE-2018-0802). The attack delivers VBShower and PowerShower backdoors, enabling stealthy system infiltration while evolving to evade detection.

Furthermore, this week, a new BellaCiao malware variant, BellaCPP, rewritten in C++, enhances versatility and stealth. Linked to the Charming Kitten APT group, it operates as a Windows service, using DLL files and domain generation algorithms for covert communication. These rising threats pose significant and immediate dangers to users worldwide.

Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo