Ebury is a Linux/Unix malware family known for stealthily stealing SSH credentials and private keys to pivot across compromised hosts.
Ebury is a Linux/Unix malware family known for stealthily stealing SSH credentials and private keys to pivot across compromised hosts. It enables long-term persistence and lateral movement by abusing stolen credentials, highlighting the risk of credential exposure in enterprise environments. Its significance lies in how credential theft can unlock widespread access with relatively low technical overhead for attackers.
Insikt Group identified GrayAlpha, a threat actor linked to FIN7, utilizing a custom loader named MaskBat to deploy NetSupport RAT through various infection vectors. These include fake browser update pages, fake 7-Zip…
The ShadowHS malware framework has been identified as a significant threat to Linux environments, utilizing a fileless architecture for stealthy operations. Discovered by Cyble Research & Intelligence Labs on January…
A report from ReliaQuest reveals that 44% of true-positive alerts in Q3 2025 were linked to identity-related weaknesses, such as excessive permissions and credential abuse. As organizations migrate assets to cloud…
A report from ReliaQuest reveals that 99% of cloud accounts are over-privileged, leading to a rise in identity-related attacks. In Q3 2025, identity compromises accounted for 44% of true-positive alerts, primarily due…