Threat IntelHIGH

Threat Intel - HPE Launches Threat Labs Amid Attacks Surge

SCSC Media
Summary by CyberPings Editorial·AI-assisted·Reviewed by Rohit Rana
Ingested:
🎯

Basically, HPE started a new lab to study and fight against big cyber attacks.

Quick Summary

HPE has launched Threat Labs to address rising enterprise-scale cyber attacks. Their report reveals sophisticated tactics targeting government and finance sectors. Organizations are urged to enhance security measures against these threats.

What Happened

Hewlett Packard Enterprise (HPE) has launched HPE Threat Labs, a new initiative aimed at tackling the rising tide of cyber threats. This research unit combines security resources from HPE and Juniper Networks. Their first report, titled "In the Wild," analyzes 1,186 active cyber campaigns from 2025, revealing alarming trends in how cyber adversaries operate.

The report notes that attackers now function with the structure and efficiency of large businesses. They employ assembly-line workflows, specialized roles, and coordinate their efforts across platforms like Telegram. This allows them to exfiltrate data in real-time, making their operations more sophisticated and harder to detect.

Who's Being Targeted

The report highlights that government organizations are the most targeted sector, with 274 campaigns aimed at them. Following closely are the finance sector with 211 campaigns and technology with 179 campaigns. This indicates a clear trend where critical infrastructure and financial institutions are under constant threat.

Attackers exploited a staggering 549 vulnerabilities and utilized over 147,000 malicious domains to facilitate their operations. The sheer scale of these attacks underscores the urgent need for organizations to bolster their cybersecurity measures.

Tactics & Techniques

One of the most concerning findings is the weaponization of generative AI for social engineering attacks. Cybercriminals are using synthetic voices, images, and videos to conduct targeted impersonation fraud, video phishing, and even executive deepfakes. These tactics make it increasingly difficult for victims to discern legitimate communications from malicious ones.

The report also emphasizes persistent gaps in patch management, with common entry points identified as VPNs, SharePoint, and edge devices. This highlights the need for organizations to prioritize their patching efforts to mitigate these vulnerabilities.

Defensive Measures

In response to these threats, HPE recommends adopting zero trust principles and implementing SASE architecture. These strategies can help organizations better secure their networks against sophisticated attacks. Additionally, the use of deception technologies and AI-native detection methods is advised to enhance threat detection and response capabilities.

Mounir Hahad from HPE stressed the importance of understanding how attackers behave in active campaigns. By analyzing their tactics and adapting defenses accordingly, organizations can better protect themselves against these evolving threats. The launch of HPE Threat Labs is a significant step in the right direction, aiming to provide deeper insights and more robust defenses against cyber adversaries.

🔒 Pro insight: The shift towards business-like structures in cybercrime necessitates a reevaluation of traditional defense strategies to counter coordinated attacks effectively.

Original article from

SCSC Media
Read Full Article

Related Pings

MEDIUMThreat Intel

Researchers Roast Cybercriminals to Diminish Their Glamour

Researchers are roasting cybercriminals to diminish their glamor. This humorous approach aims to expose their failures and fracture trust within criminal networks. It's a fresh take on cybersecurity, focusing on education and awareness.

The Register Security·
HIGHThreat Intel

Node.js Maintainers Targeted - Sophisticated Social Engineering Scheme

A coordinated social engineering scheme is targeting Node.js developers, risking the integrity of widely used software packages. This alarming trend highlights the need for vigilance in the open-source community.

Cyber Security News·
HIGHThreat Intel

Transparent Tribe Targets India's Startup Ecosystem - New Threat

Acronis reveals that Transparent Tribe is now targeting India's startup sector, especially cybersecurity firms. This shift raises concerns about espionage and data security risks. Startups must bolster their defenses against these sophisticated attacks.

CyberWire Daily·
HIGHThreat Intel

Gaming Industry - High-Stakes Cybersecurity Threats Explained

Cybercriminals are increasingly targeting the gaming industry, driven by financial transactions and sensitive data. As casinos go digital, understanding these threats is vital for operators to safeguard their assets.

Cyber Security News·
HIGHThreat Intel

China-Linked TA416 Targets European Governments with Phishing

TA416, a China-aligned threat actor, is targeting European governments with sophisticated phishing campaigns using PlugX malware. This poses significant risks to diplomatic security. Stay informed to safeguard your organization.

The Hacker News·
HIGHThreat Intel

Spear-Phishing Campaign Neutralizes MFA for Executives

A new spear-phishing campaign is targeting senior executives, neutralizing MFA protections. This poses serious risks to corporate security. Organizations must enhance their defenses against such sophisticated threats.

SC Media·