ZeroFox Weekly Intelligence Brief – July 1, 2024
|by Alpha Team

ZeroFox Weekly Intelligence Brief – July 1, 2024
TLP:GREEN
ZeroFox’s Weekly Intelligence Briefing highlights the major developments and trends across the cyber threat landscape. ZeroFox Intelligence is derived from a variety of sources, including—but not limited to—curated open-source accesses, vetted social media, proprietary data sources, and direct access to threat actors and groups through covert communication channels. Information relied upon to complete any report cannot always be independently verified. As such, ZeroFox applies rigorous analytic standards and tradecraft in accordance with best practices and includes caveat language and source citations to clearly identify the veracity of our Intelligence reporting and substantiate our assessments and recommendations. All sources used in this particular Intelligence product were identified prior to 12:00 PM (EDT) on February 9, 2024; per cyber hygiene best practices, caution is advised when clicking on any third-party links.
Read the Brief
View the full report here
Russian Satellite Interference Under Review After International Complaints
What happened: The International Telecommunications Union (ITU) is reviewing complaints from Ukraine and European countries about Russian satellite interference impacting navigation services and television broadcasts. The interference, which includes GPS jamming and broadcasting violent images on children's television channels, has prompted Ukraine and other nations to request ITU intervention to stop the disruptions. France, Sweden, the Netherlands, and Luxembourg also reported similar issues. Russia's Geneva diplomatic mission denied these allegations, stating compliance with ITU rules and accusing NATO countries of similar actions. This situation follows accusations from Western officials that Russia launched a major cyberattack on a Ukrainian satellite network during its 2022 invasion. Airlines have also reported increased GPS interference, and Estonia has blamed Russia for disrupting navigation above the Baltic states. The ITU, responsible for global satellite coordination, aims to resolve the interference issue but has not specified how it will address the complaints.
Kaspersky Faces Sanctions from U.S. Treasury Soon After Ban
What happened: The U.S. Department of the Treasury's Office of Foreign Assets Control (OFAC) imposed sanctions on 12 senior executives at Kaspersky Lab shortly after the Department of Commerce banned the Russian company and its affiliates from operating in the United States. This ban, effective July 20, 2024, includes placing Kaspersky on the Entity List due to concerns over national security. These actions follow long-standing allegations of ties between Kaspersky Lab and the Russian government, which the company denies.
CISA and Partners Explore Memory Safety in Critical Open Source Projects
What happened: The Cybersecurity and Infrastructure Security Agency (CISA) has released Exploring Memory Safety in Critical Open Source Projects in partnership with the Federal Bureau of Investigation (FBI) and other agencies. This guidance aims to provide organizations with findings on the scale of memory safety risks in specific open source software (OSS). Memory safety vulnerabilities are among the most prevalent classes of software vulnerability and reportedly generate substantial costs for both software manufacturers and consumers related to patching, incident response, and other efforts. This joint guidance provides a starting point for software manufacturers to create memory-safe roadmaps—including plans to address memory safety in external dependencies, which commonly include OSS.
Tags: tlp:green