SpiderLabs Blog
Attracting more than a half-million annual readers, this is the security community's go-to destination for technical breakdowns of the latest threats, critical vulnerability disclosures and cutting-edge research.
CVE-2022-37461: Two Reflected XSS Vulnerabilities in Canon Medical’s Vitrea View
Overview During a penetration test, Trustwave Spiderlabs’ researchers, Jordan Hedges and Avery Warddhana - previously with Trustwave - identified two vulnerabilities in..
Retaliation by the Pro-Russian Group KillNet
At the beginning of the Russia-Ukraine conflict, KillNet - a Russian cybergang - began actively collecting open-source intelligence (OSINT), which drew interest from various..
2022 Trustwave SpiderLabs Telemetry Report
As organizations go about their regular routine of finding and adding new technologies to help increase their overall success, each organization must keep in mind the security..
Oracle SBC: Multiple Security Vulnerabilities Leading to Unauthorized Access and Denial of Service
Oracle Communications Session Border Controller (SBC) is one of the most popular products worldwide that helps service providers deliver trusted, carrier-grade, real-time..
Overview of the Cyber Weapons Used in the Ukraine - Russia War
Observing the ongoing conflict between Russia and Ukraine, we can clearly see that cyberattacks leveraging malware are an important part of modern hybrid war strategy.
The Price Cybercriminals Charge for Stolen Data
For the price of a Starbuck’s Caramel Frappuccino Grande and a cheese Danish, about $8, a cybercriminal can obtain all the information needed to max out a person’s stolen credit..
IPFS: The New Hotbed of Phishing
A few months ago, we reported on an interesting site called the Chameleon Phishing Page. These websites have the capability to change their background and logo depending on the..
Want To Become A Red Teamer? This Is What You Need To Know
Everyone loves buzz words, no? Red team is the newest (well... not that new) coolest thing on the streets of information security city and many cybersecurity pros want to jump..
Decade Retrospective: The State of Vulnerabilities
Decade Retrospective: The State of Vulnerabilities The Spanish philosopher George Santayana is credited with the aphorism “Those who cannot learn from history are doomed to repeat..
CVE-2022-29593- Authentication Bypass by Capture Replay (Dingtian-DT-R002)
In the OT space it is increasingly common to see devices that are used to bridge the gap between the world of PLCs and IP based networks.
Interactive Phishing Mark II: Messenger Chatbot Leveraged in a New Facebook-Themed Spam
Facebook Messenger is one of the most popular messaging platforms in the world, amassing 988 million monthly active users as of January 2022, according to Statista. One important..
The Importance of White-Box Testing: A Dive into CVE-2022-21662
I want to take some time to explain the importance of using a white-box approach when testing applications for vulnerabilities.
ModBus 101: One Protocol to Rule the OT World
Ever wondered how large-scale power plants monitor or control the myriad of systems that fill their environment? Have you thought about how some of the world’s greatest industrial..
Trustwave's Action Response: More MSDT Fallout with “Dogwalk”
A zero-day vulnerability has been re-disclosed that is very similar to the Follina zero-day announced last week and is actively being tracked by Trustwave SpiderLabs. The..
Not all "Internet Connections" are Equal
People commonly think that any “Internet Connection” is exactly the same, or they may be vaguely aware that some connections are faster than others. However, there are significant..
Trustwave's Action Response: Microsoft zero-day CVE-2022-30190 (aka Follina)
Update June 7 - In the event of a compromise related to the Follina vulnerability, IT teams can potentially identify network connections in the registry associated with the..
Trustwave's Action Response: Atlassian Confluence CVE-2022-26134
Updated June 5 - Atlassian issued a fix for CVE-2022-30190 for versions 7.4.17, 7.13.7, 7.14.3, 7.15.2, 7.16.4, 7.17.4 and 7.18.1. The updated versions are available here.
Grandoreiro Banking Malware Resurfaces for Tax Season
Trustwave SpiderLabs in early April observed a Grandoreiro malware campaign targeting bank users from Brazil, Spain, and Mexico. The campaign exploits the tax season in target..