Check Point Research Latest Research by our Team
- The Cat and Mouse Game: Exploiting Statistical Weaknesses in Human Interaction Anti-Evasionsby samanthar@checkpoint.com on February 20, 2025 at 2:58 pm
Executive Summary Why We Care about Sandbox Emulation As a discipline, information security involves a vast web of entry vectors, mitigations, and counter-mitigations. Among these, one of the most impactful points of conflict between attackers and defenders is what happens when binaries are subjected to sandbox emulation. Purely static analysis has been understood to be The post The Cat and Mouse Game: Exploiting Statistical Weaknesses in Human Interaction Anti-Evasions appeared first on Check Point Research.
- 17th February – Threat Intelligence Reportby andreyy@checkpoint.com on February 17, 2025 at 12:02 pm
For the latest discoveries in cyber research for the week of 17th February, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES SimonMed Imaging, one of the largest diagnostic imaging companies in the US, has been breached by Medusa ransomware group, resulting in the theft of over 212 GB of sensitive data from its The post 17th February – Threat Intelligence Report appeared first on Check Point Research.
- 10th February – Threat Intelligence Reportby tomersp@checkpoint.com on February 10, 2025 at 1:53 pm
For the latest discoveries in cyber research for the week of 10th February, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Grubhub, the US-based online food ordering and delivery platform, suffered a data breach due to unauthorized access through a compromised third-party service provider’s account. The incident exposed personal details of customers, drivers, The post 10th February – Threat Intelligence Report appeared first on Check Point Research.
- 3rd February – Threat Intelligence Reportby andreyy@checkpoint.com on February 3, 2025 at 2:06 pm
For the latest discoveries in cyber research for the week of 3rd February, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Mizuno USA, giant sports equipment manufacturer, has confirmed a cyber-attack that resulted in the theft of personal information from its network between August and October 2024. The data breach included names, Social The post 3rd February – Threat Intelligence Report appeared first on Check Point Research.
- 27th January – Threat Intelligence Reportby hagarb on January 27, 2025 at 1:27 pm
For the latest discoveries in cyber research for the week of 27th January, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Stark Aerospace, a US-based manufacturer specializing in missile systems and UAVs, contractor of the US Military and the Department of Defense (DoD), has been targeted by the INC ransomware group. The attackers The post 27th January – Threat Intelligence Report appeared first on Check Point Research.
- 20th January – Threat Intelligence Reportby andreyy@checkpoint.com on January 20, 2025 at 3:03 pm
For the latest discoveries in cyber research for the week of 20th January, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Hotel management platform Otelier has suffered a data breach that resulted in extraction of almost eight terabytes of data. The threat actors compromised company’s Amazon S3 cloud storage, stealing guests’ personal information The post 20th January – Threat Intelligence Report appeared first on Check Point Research.
- 13th January – Threat Intelligence Reportby andreyy@checkpoint.com on January 13, 2025 at 9:41 am
For the latest discoveries in cyber research for the week of 13th January, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES The International Civil Aviation Organization (ICAO), that is part of the UN, confirmed a compromise of its recruitment database that exposed 42,000 recruitment applications. The data contains records from April 2016 to The post 13th January – Threat Intelligence Report appeared first on Check Point Research.
- FunkSec – Alleged Top Ransomware Group Powered by AIby stcpresearch on January 10, 2025 at 12:00 pm
Key Points Introduction The FunkSec ransomware group first emerged publicly in late 2024, and rapidly gained prominence by publishing over 85 claimed victims—more than any other ransomware group in the month of December. Presenting itself as a new Ransomware-as-a-Service (RaaS) operation, FunkSec appears to have no known connections to previously identified ransomware gangs, and little The post FunkSec – Alleged Top Ransomware Group Powered by AI appeared first on Check Point Research.
- Banshee: The Stealer That “Stole Code” From MacOS XProtectby samanthar@checkpoint.com on January 9, 2025 at 2:08 pm
Research by: Antonis Terefos (@Tera0017) Key Points Introduction As of 2024, approximately 100.4 million people worldwide use macOS, accounting for 15.1% of the global PC market. Of the millions of macOS users, many falsely assume that their systems are inherently secure from malware. This perception stems from macOS’s Unix-based architecture and historically lower market share, making The post Banshee: The Stealer That “Stole Code” From MacOS XProtect appeared first on Check Point Research.
- 6th January– Threat Intelligence Reportby andreyy@checkpoint.com on January 6, 2025 at 1:26 pm
For the latest discoveries in cyber research for the week of 6th January, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Check Point elaborated on the US Treasury Department cyber-attack that compromised employee workstations and classified documents. The breach, attributed to a China state-sponsored threat actor, involved unauthorized remote access using a security The post 6th January– Threat Intelligence Report appeared first on Check Point Research.
- 30th December – Threat Intelligence Reportby hagarb on December 30, 2024 at 9:54 am
For the latest discoveries in cyber research for the week of 30th December, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES The Clop ransomware gang exploited a zero-day vulnerability (CVE-2024-50623) in Cleo’s Secure File Transfer products and is extorting 66 companies following alleged data theft. The attackers have given the victims 48 hours The post 30th December – Threat Intelligence Report appeared first on Check Point Research.
- 23rd December – Threat Intelligence Reportby andreyy@checkpoint.com on December 23, 2024 at 12:05 pm
For the latest discoveries in cyber research for the week of 23rd December, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES The State of Rhode Island has issued a notification that RIBridges, the state’s portal for social services, has suffered a cyber attack and data leak. According to the reports, the breach was The post 23rd December – Threat Intelligence Report appeared first on Check Point Research.
- 16th December – Threat Intelligence Reportby lorenf on December 16, 2024 at 7:36 am
For the latest discoveries in cyber research for the week of 16th December, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES The Romanian National Cybersecurity Directorate (DNSC) has disclosed a ransomware attack conducted by Lynx ransomware gang on the country’s energy provider Electrica Group, which provides services to more than 3.8M people across The post 16th December – Threat Intelligence Report appeared first on Check Point Research.