Latest News

Cyber Warfare Escalation: Iran’s Fox Kitten Group Behind US Ransomware Attacks

This week, the FBI and CISA sounded the alarm about a troubling development: Iran’s state-sponsored Fox Kitten group is stepping up its cyber activities by collaborating with ransomware gangs to target organizations both in the US and around the world. Advanced threat group Pioneer Kitten and Rubidium have changed their strategy and are now looking to take advantage of their network by facilitating ransomware attacks. 

Fox Kitten, which began operations in 2017 and is believed to be backed by the Iranian government, found early access to ransomware like ALPHV and the Ransomhouse Group, which exploited vulnerabilities in VPN devices and other network services by gaining unauthorized access to the victims. For example, day zero vulnerabilities such as CVE-2024-24919 in Check Point VPNs and CVE-2024-3400 in Palo Alto Networks’ PAN-OS have recently been discovered. 

Once inside, Fox Kitten’s strategy includes obtaining credentials, deploying malware, and escalating privileges to facilitate ransomware attacks. The group’s access methods exploit unpatched vulnerabilities, highlighting a fundamental issue: Many applications fail to address these security flaws. According to Tenable, a gazillion compromised devices remain unstoppable, making them targets of prominence. 

This advisory serves as a wake-up call to the significance of proactive security measures and robust patch management. The troubling trend of state-sponsored cyber groups collaborating with ransomware operations, using their early access to amplify their influence and revenue, underscores the urgency of this need. It is not a matter of if but when the next attack will occur. The time to act is now. 

Share
StratosAlly

Recent Posts

Meta Launches Open-Source Tools to Combat AI Vulnerabilities

Meta, on Tuesday, launched LlamaFirewall, a new open-source framework that aims to protect AI systems…

1 day ago

Professional Vulnerability: The Leadership Skill No One Talks About

If you have a choice, would you like to work in a team where your…

2 days ago

Chrome Updates Privacy Approach, Drops Third-Party Cookie Pop-Up

Google has made an unusual announcement on Tuesday that it will not show a separate…

2 days ago

Critical Security Gap in Rack::Static Threatens Ruby Applications

Researchers have discovered a severe flaw in Rack::Static middleware, which operates commonly on Ruby-based web…

3 days ago

Strategic Optimism: Balancing Realism and Positivity for Better Decision-Making

Let’s start with a story we all can relate to. Imagine someone who wakes up every…

5 days ago

Apple Devices Under Attack: Immediate Update Urged After Zero-Day Threats

Apple released emergency security patches for iPhones, iPads, Macs (sequoia), Apple TV, and Vision Pro…

5 days ago