Summer Breeze and Cyber Ease: Check out our June Intel

Summer Breeze and Cyber Ease: Check out our June Intel

It’s that time of the month when we catch you up on all the exciting happenings in Cyderes and interesting tidbits from the world of cyber. So grab your coffee and favorite snack and let’s dive in! 


Unlock Cybersecurity Excellence with Cyderes on Google Cloud 

Click image to visit partner page

It's no secret that Cyderes is your go-to partner for Google Chronicle deployment and implementation. Discover how we can help your organization proactively detect, investigate, and respond to threats with speed and precision, leveraging unmatched visibility, AI insights, and cyber threat intelligence from Google Security Operations. 

Explore the Cyderes & Google Cloud Partnership page for everything you need to know about this dynamic collaboration and how it can transform your cybersecurity strategy. 


Discover Our Exciting New Security Solutions 

2024 is marked by technological innovation and relentless adversaries. We’re ahead of the curve, constantly developing the best solutions to protect your organization in this ever-evolving cybersecurity landscape. Explore our service areas to find the perfect fit for your needs: 

PAM

CYBERSECURITY ANALYSIS PLATFORM (CAP)

CYDERES SECURITY OPERATIONS - ADVISORY SERVICES

CYDERES SECURITY OPERATIONS - ADVISORY SERVICES

PENETRATION TESTING AS-A-SERVICE [PAS]

BREACH & ATTACK SIMULATION [BAS]

THREAT VULNERABILITY REMEDIATION MANAGEMENT [TVRM]

CYBER RISK & COMPLIANCE (CRC)

MICROSOFT ENTRA ID  

Want to engage further? Schedule a consultation.


Must Read Blog: The Crucial Role of a Cloud Breach Response Plan  

Click to read blog

In the contemporary landscape of digital business operations, organizations are progressively dependent on cloud services for storing and managing their sensitive data. Amidst this shift, the shadow of cybersecurity threats grows increasingly ominous, posing significant challenges to data security. Among these threats, the potential for a cloud breach stands out as a particularly pressing concern, given its ability to inflict far-reaching damage on an organization's integrity, financial stability, and public image.

In this blog, Patrick C. and Hein Alberts delve deeper into the critical importance of devising a comprehensive cloud breach response plan.   

Read now!


SOC Convos: StrelaStealer Resurgence: JavaScript-Driven Credential Stealer Targets Europe 

Click image to learn more!

The SonicWall Capture Labs threat research team has been tracking StrelaStealer, a credential stealer targeting Europe, with a recent surge in activity. In mid-June, StrelaStealer's distribution via JavaScript spiked, aiming at Outlook and Thunderbird email credentials. This latest version avoids systems in Russia, focusing on Poland, Spain, Italy, and Germany. 

Infection Process 

Initial Vector: An obfuscated JavaScript file arrives via email attachment. 

File Drop: The file drops a self-copy in the “C:\Users<Username>” directory, often named randomly like “needlereportcreepy.bat”. 

Execution: The .bat file runs to check the OS language, excluding Russian users. 

Payload Delivery: For non-Russian users, a base64-encoded PE file is dropped, decoded to reveal a DLL file, and executed with regsvr32.exe. 

Recommendations 

User Training: Regularly train users on phishing techniques and email attachment verification. 

Password Policies: Promote unique, complex passwords and require multi-factor authentication (MFA) when possible. 

Software Updates: Ensure all software, including OS, applications, and third-party software, is updated with the latest security patches. 

Read more.


Another Month, Another Win... Cybersecurity Excellence Awards 

We’re thrilled to announce that we’ve won in ELEVEN categories at the 2024 Cybersecurity Excellence Awards! 

  • Azure Cloud Security Architecture Consulting & Engineering 

  • AI Security Solution - ACES 

  • Best Cybersecurity Company 

  • Recruiter of the Year 

  • Cybersecurity Team of the Year (IAM) 

  • SOC Team of the Year 

  • Cyber Threat Intelligence - DARC4 Labs 

  • Best Managed Security Service Providers (MSSP) 

  • Biggest Cybersecurity Brand Growth 

  • Cybersecurity Service Provider of the Year 

  • Cybersecurity Woman of the Year 

A huge thank you to everyone who voted, and congratulations to all Cyderians for making this possible! 🙌 

 

#ICYMI – National Women in Engineering Day 

June 23rd was National Women in Engineering Day, and we celebrated by shining the spotlight on one of our amazing DevOps engineers, Jonna Nevins.

Here’s a sneak peek into a day in her life: 

Click to watch the video!

Cheers to all the phenomenal women on our team 🙌 

Watch the video.

 

---- 

Thanks for being a part of our cybersecurity community! Please leave your comments and share this knowledge with your network. Together, we can stay one step ahead of the digital threats. 

To your secure future,  

The Cyderes Team 

Peter Zubert

Account Director at Clango | Helping customers maximize the potential of their IAM and PAM programs

1w

Love this

To view or add a comment, sign in

Insights from the community

Others also viewed

Explore topics