CIP Weekly Denylist: Phishing and Malicious Domain Search Terms in the 4th Week of September

Phishing and Malicious URL Search Terms in the 4th Week of September 2023 CIP Weekly Denylist – Phishing or Malicious URL * Clicking the link takes you to the CIP Search Results Page. AWS Phishing Site hxxps://11awsa[.]com/xml/index[.]html Netflix Phishing Site hxxps://netflix-clone-react[.]ayazvefa[.]dev Facebook Phishing Site hxxps://facebook[.]slogin1[.]repl[.]co/?id=5893962753 Google Phishing Site hxxps://videos0003ss[.]blogspot[.]com/#0.3295991266026579 Activision Blizzard Phishing Site hxxps://activision[.]okta[.]inversionesdavila[.]com/home/oauth2/index[.]html Coinbase [...]

By |2023-11-07T12:45:16+09:00September 26th, 2023|Tags: , |0 Comments

Cyber Espionage Group APT33 Targets Exposed Confluence Servers

On September 14, 2023, Microsoft announced on its blog that an Iranian cyber espionage group launched a Password Spraying Attack targeting thousands of organizations in the U.S. and around the world.  The professional spy group, generally known as APT33 as well as Peach Sandstorm, HOLMIUM, or Refined Kitten, has been active since 2013. It has attacked diverse industrial [...]

By |2023-09-25T10:51:41+09:00September 22nd, 2023|Tags: , |0 Comments

[Criminal IP v1.40.1] 2023-09-21 Release Note

An update to Criminal IP v1.40.1 has been released. [Criminal IP v1.40.1] Regular Maintenance and Update Release Note Maintenance Period: 2023.09.21 06:00~08:00 AM (UTC) [Improvements] Domain Search Lite Scan Report UI/UX improved The UI/UX for cases where login or plan upgrades are additionally required among the needed data for a Full Scan. Improved UI/UX for Lite Scan [...]

By |2023-10-30T11:33:37+09:00September 22nd, 2023|Tags: |0 Comments

CIP Weekly Denylist: Phishing and Malicious Domain Search Terms in the 3rd Week of September

Phishing and Malicious URL Search Terms in the 3rd Week of September 2023 CIP Weekly Denylist – Phishing or Malicious URL * Clicking the link takes you to the CIP Search Results Page. Walmart Phishing Site hxxps://reformacolombia[.]org/wal-mart[.]servicenow[.]com/authcontrol/ Facebook Phishing Site hxxps://oglaszajmy-warszawa[.]pl/authorize[.]php?8NCRZFT38nwjIVDAfVzj1f7ob7zimwE0xZx8bt3VlHRZbXRVd1zBFUQ2EjnHy7SSe4Th5ojFnbcFbiRKFUElk00NMrVNAtjyFoYgX9o0YDiUgPJ7AjpmFetZGL4vGi1KDglWIAZ6m5DsZO6euvFUWAUqI0b6m0D8dGc16Fv0kwZbpmzu5f89jYzYVgnYNDCLLwHwJytiBoJw2dAaludLd68AM7rlvQvmjbj23pr6ngswaCqXMXF3w9zr8Gsm6i5K= Netflix Phishing Site hxxps://netflix-clone-react[.]ayazvefa[.]dev Activision Blizzard Phishing Site hxxps://activision[.]okta[.]lannea[.]com/home/oauth2/index[.]html American Express Phishing Site hxxps://www[.]amex-contacts[.]com.contacts-americanexpress[.]com/ [...]

By |2023-11-07T12:45:34+09:00September 20th, 2023|Tags: , |0 Comments

CVE-2022-42475: Thousands of Unpatched Fortinet Vulnerabilities Exposed

According to a joint report released by CISA, FBI, and U.S. Cyber Command (USCYBERCOM) on September 7, 2023, state-sponsored hacking groups have recently exploited critical vulnerabilities in Zoho and Fortinet software to penetrate U.S. aviation agencies. The hackers gained unauthorized access to the organization's network by exploiting the disclosed Zoho application vulnerability (CVE-2022-47966) and the Fortinet vulnerability (CVE-2022-42475). While [...]

By |2023-09-25T10:52:22+09:00September 15th, 2023|Tags: , |0 Comments

CIP Weekly Denylist: Phishing and Malicious Domain Search Terms in the 2nd Week of September

Phishing and Malicious URL Search Terms in the 2nd Week of September 2023 CIP Weekly Denylist – Phishing or Malicious URL * Clicking the link takes you to the CIP Search Results Page. Facebook Phishing Site hxxp://viral-clip2[.]000webhostapp[.]com/ hxxps://kondisidunia96sekarang23[.]duckdns[.]org/ AT&T Phishing Site hxxps://attmail71[.]godaddysites[.]com/ Netflix Phishing Site hxxps://shaikrahmathullah[.]github[.]io/Netflix-homepage/ USAA Phishing Site hxxp://risoriteamllc[.]com/tm/post One Digital Service Phishing Site [...]

By |2023-11-07T12:45:51+09:00September 12th, 2023|Tags: , |0 Comments

Re-evaluating Corporate SSL VPNs After The Cisco VPN Hack

In today's remote work landscape, SSL VPNs have become a cornerstone of corporate security measures, allowing employees to securely access internal networks from various locations. However, the vulnerability lies in the fact that if a hacker gains access to an SSL VPN, they acquire the same level of access as legitimate users. To mitigate this, [...]

By |2023-09-11T10:26:26+09:00September 8th, 2023|Tags: |0 Comments

[Criminal IP v1.39.1] 2023-09-07 Release Note

An update to Criminal IP v1.39.1 has been released. [Criminal IP v1.39.1] Regular Maintenance and Update Release Note Maintenance Period: 2023.09.07 06:00~08:00 AM (UTC) [New Changes] Pricing Page UI/UX Renewal Enterprise products for businesses and Academic license information pages have been added. Enterprises can inquire and request demos to choose ASM, FDS, and SecOps solutions according to each [...]

By |2023-10-30T15:16:06+09:00September 7th, 2023|Tags: |0 Comments

CIP Weekly Denylist: Phishing and Malicious Domain Search Terms in the 1st Week of September

Phishing and Malicious URL Search Terms in the 1st Week of September 2023 CIP Weekly Denylist – Phishing or Malicious URL * Clicking the link takes you to the CIP Search Results Page. Amazon Phishing Site hxxps://amazom[.]bio Facebook Phishing Site hxxps://motoryzacyjna-gielda[.]pl/authorize[.]php Paypal Phishing Site hxxp://www[.]paypal-carregamento[.]pt/pt/carregamento/ Google Phishing Site hxxp://cliphotxxxs[.]applikciones[.]com/qAfeBHTnubWeSoaC Outlook Phishing Site hxxps://kralakademi[.]com/scusd/outlook/oauth2/oauth2/logon[.]html Netflix Phishing [...]

By |2023-11-07T12:46:27+09:00September 5th, 2023|0 Comments

Over 100,000 Juniper Firewalls Exposed: Beware of the RCE Vulnerability Bug Chain

Products from Juniper Networks, including Juniper firewalls, are already significantly exposed on the attack surface. Searching for the title of the web server utilized for Juniper Networks J-Web on Criminal IP's Asset Search can lead to the discovery of online-exposed servers. These servers are at a heightened risk of becoming prime targets for hackers.

By |2023-09-04T16:34:09+09:00September 1st, 2023|Tags: , |0 Comments
Go to Top