SecurityWeek reports that Cigent Technology has introduced a new endpoint data protection platform that provides data encryption and exfiltration protections in an effort to avert ransomware compromise.
Novel cryptomining attacks deploying the GhostEngine payload to deactivate endpoint detection and response systems and distribute the XMRig miner through vulnerable kernel driver exploitation were described in separate reports from Elastic Security Labs and Antiy, according to BleepingComputer.
None of the endpoint detection and response solutions from Microsoft, SentinelOne, CrowdStrike, Cybereason, and Palo Alto Networks were able to detect or prevent eight new process injection techniques using Windows thread pools to execute malicious code dubbed "Pool Party," reports SecurityWeek.
TechCrunch reports that security orchestration, automation, and response platform developer Revelstoke is set to be purchased by cybersecurity firm Arctic Wolf in a bid to facilitate accelerated and more comprehensive cyberattack detection and response.
Major U.S. cybersecurity firm SentinelOne has reportedly been considering a sale following a significant reduction in share values over the past two years amid an economic slowdown, reports Reuters.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.