RansomHub Affiliate leverages Python-based backdoor

In an incident response in Q4 of 2024, GuidePoint Security identified evidence of a threat actor utilizing a Python-based backdoor to maintain access to compromised endpoints. The threat actor later leveraged this access to deploy RansomHub encryptors throughout the entire impacted network. ReliaQuest documented an earlier version of this malware on their website in February 2024….

Read More

US Treasury Department imposes sanctions on Chinese company over Salt Typhoon hack

The U.S. Treasury Department on Friday imposed sanctions on alleged hacker Yin Kechen and cybersecurity company Sichuan Juxinhe Network Technology Co., accusing both of being involved in a series of hacks against American telecom companies. The Department of the Treasury’s Office of Foreign Assets Control (OFAC)  in US is sanctioning Yin Kecheng, a Shanghai-based cyber…

Read More