CrowdStrike says The Com-affiliated threat groups are using voice phishing and fake SSO pages to break into SaaS environments and steal data fast for extortion.
The attack, which originated at Context.ai, showcases the pitfalls of interconnected cloud applications and SaaS integrations with overly privileged permissions.
The program comes as the tech industry races to secure software before similar AI-powered offensive capabilities become too much for defenders to handle.
The trio, which share lineage with the more broadly defined Lazarus Group, are focused on espionage and cryptocurrency theft, according to CrowdStrike.
Rep. Andy Ogles, R-Tenn., speaks to reporters before attending an afternoon Republican caucus meeting at the U.S. Capitol on Sep. 29, 2023. (Photo by Chip Somodevilla/Getty Images)
CrowdStrike announced Tuesday an agreement to acquire Seraphic Security, a browser runtime security provider, in a move that signals growing recognition among cybersecurity firms that traditional protective…
CrowdStrike is buying identity management startup SGNL, a move that underscores how identity security has become a central battleground in enterprise cybersecurity as companies add cloud services…