Infrastructure Analysis: LockBit 3.0 Ransomware Affiliates Exploit CVE 2023–4966 Citrix Bleed Vulnerability
#CVE_2023–4966
#LockBit #ShadowSyndicate https://osintteam.blog/infrastructure-analysis-lockbit-3-0-799a4ff1ca59
Infrastructure Analysis: LockBit 3.0 Ransomware Affiliates Exploit CVE 2023–4966 Citrix Bleed Vulnerability
In this blog post, we’re going to take a look at the recent IOCs provided by Boeing in the joint CISA/FBI/ACSC report. LockBit 3.0 affiliates are exploiting CVE-2023–4966, known as Citrix Bleed, in…
OSINT Team
Hackers exploit Aiohttp bug to find vulnerable networks
The ransomware actor 'ShadowSyndicate' was observed scanning for servers vulnerable to CVE-2024-23334, a directory traversal vulnerability in the aiohttp Python library.
BleepingComputerAiohttp im Visier von Hackern: Verwundbare Netzwerke in Gefahr
Die Sicherheitslücke in der Python-Bibliothek aiohttp wird derzeit aktiv ausgenutzt. Auch Deutschland befindet sich im Fokus der Angreifer.
Tarnkappe.info
De verborgen wereld van Ransomware: Het ontrafelen van de geheimen van 'ShadowSyndicate' / Ransomware / Cybercrime | CyberCrimelnfo.nl | De bibliotheek van Cybercrime en Darkweb
Ontdek de duistere geheimen van ShadowSyndicate, een cruciale schakel in de wereld van cybercriminaliteit gespecialiseerd in Ransomware-as-a-Service. Leer over hun werkwijzen, technische complexiteit en hoe je je kunt beschermen met 'Ransomwared' van Erik Westhovens "If you think good security is expensive, try bad one".
In related news, German law enforcement authorities have carried out a second targeted operation against individuals affiliated with the DoppelPaymer ransomware group.
#Cybersecurity #HackerGroup #Ransomware #ShadowSyndicate
https://cybersec84.wordpress.com/2023/09/27/shadowsyndicate-a-new-ransomware-group-to-watch/

ShadowSyndicate: A New Ransomware Group to Watch
Cybersecurity experts have brought to light the existence of a new cybercrime group called ShadowSyndicate (previously known as Infra Storm). This group is suspected of utilizing up to seven differ…
CyberSec84 | Cybersecurity news.
ShadowSyndicate Investigation Reveals RaaS Ties - RedPacket Security
A recent collaborative investigation by Group-IB Threat Intelligence, Bridewell and threat researcher Michael Koczwara has exposed the existence of a new
RedPacket Security
ShadowSyndicate hackers linked to multiple ransomware ops, 85 servers
Security researchers have identified infrastructure belonging to a threat actor now tracked as ShadowSyndicate, who likely deployed seven different ransomware families in attacks over the past year.
BleepingComputer