Connect with us
Anglostratits

Business

Kaspersky: Advanced Persistent Threat (APT41) targets Southern African organisation in espionage attack

Published

on

Kaspersky

Based on Kaspersky experts’ analysis, the attackers may have gained access to the organisation’s network through a web server exposed to the Internet

JOHANNESBURG, South Africa, July 21, 2025/APO Group/ –Kaspersky Managed Detection and Response experts (www.Kaspersky.co.za) have observed a cyber espionage attack on an organisation in Southern African and have linked it to the Chinese-speaking  APT41 group. Although the threat actor has shown limited activity in Southern Africa, this incident reveals that the cyber attackers have targeted government IT services in one of the countries in the region, attempting to steal sensitive corporate data — including credentials, internal documents, source code, and communications.

APT (Advanced Persistent Threat) is a category of threat actors known for carrying out concerted, stealthy, and ongoing attacks against specific organisations, as opposed to opportunistic, isolated incidents that account for most cybercriminal activity. The adversaries’ techniques observed during the attack in Southern Africa allowed Kaspersky to attribute it to the Chinese-speaking APT41 group with a high confidence. The primary goal of the attack was cyber espionage, which is typical for this threat actor. The attackers attempted to collect sensitive data from the machines they compromised within the organisation’s network.

It is noteworthy that APT41 typically has been showing quite limited activity in the Southern African region. APT41 specialises in cyber espionage and targets organisations across various industries, including telecommunications providers, educational and healthcare institutions, IT, energy, and other sectors, with known activity in at least 42 countries.

Based on Kaspersky experts’ analysis, the attackers may have gained access to the organisation’s network through a web server exposed to the Internet. Using a credential harvesting technique – known in professional terms as registry dumping – the attackers obtained two corporate domain accounts: one with local administrator rights on all workstations and another belonging to a backup solution, which had domain administrator privileges. These accounts allowed the attackers to compromise additional systems within the organisation.

One of the stealers used for data collection was a modified Pillager utility, designed for exporting and decrypting data. The attackers compiled its code from an executable file into a Dynamic Link Library (DLL). With it, they aimed to gather saved credentials from browsers, databases, administrative tools, as well as project source code, screenshots, active chat sessions and their data, email correspondence, lists of installed software, operating system credentials, Wi-Fi credentials, and other information.

Defending against such sophisticated attacks is impossible without comprehensive expertise and continuous monitoring of the entire infrastructure

The second stealer used during the attack was Checkout. In addition to saved credentials and browser history, it was also capable of collecting information on downloaded files and browser-stored credit card data. The attackers also used the RawCopy utility and a version of Mimikatz compiled as a Dynamic Link Library (DLL) to dump registry files and credentials, as well as Cobalt Strike for Command and Control (C2) communication on compromised hosts.

“Interestingly, as one of their C2 communication channels besides Cobalt Strike, the attackers chose the SharePoint server within the victim’s infrastructure. They communicated with it using custom C2 agents connected with a web-shell. They may have chosen SharePoint because it was an internal service already present in the infrastructure and unlikely to raise suspicion. Moreover, in that case, it probably offered the most convenient way to exfiltrate data and control compromised hosts through a legitimate communication channel,” explains Denis Kulik, Lead SOC Analyst at Kaspersky Managed Detection and Response service.

“In general, defending against such sophisticated attacks is impossible without comprehensive expertise and continuous monitoring of the entire infrastructure. It is essential to maintain full security coverage across all systems with solutions capable of automatically blocking malicious activity at an early stage — and to avoid granting user accounts excessive privileges,” comments Denis Kulik.

To mitigate or prevent similar attacks, organisations are advised to follow these best practices:

  • Ensure that security agents are deployed on all workstations within the organisation without exception, to enable timely incident detection and minimise potential damage.
  • Review and control service and user account privileges, avoiding excessive rights assignments – especially for accounts used across multiple hosts within the infrastructure.
  • To protect the company against a wide range of threats, use solutions from the Kaspersky Next (https://apo-opa.co/44EI2e3) product line that provide real-time protection, threat visibility, investigation and the response capabilities of EDR and XDR for organisations of any size and industry. Depending on your current needs and available resources, you can choose the most relevant product tier and easily migrate to another one if your cybersecurity requirements are changing.
  • Adopt managed security services by Kaspersky such as Compromise Assessment (https://apo-opa.co/4m8aElL), Managed Detection and Response (MDR) (https://apo-opa.co/4m6do37) and / or Incident Response (https://apo-opa.co/44VsAsP), covering the entire incident management cycle – from threat identification to continuous protection and remediation.  They help to protect against evasive cyberattacks, investigate incidents and get additional expertise even if a company lacks cybersecurity workers.
  • Provide your InfoSec professionals with an in-depth visibility into cyberthreats targeting your organisation. The latest Kaspersky Threat Intelligence (https://apo-opa.co/3TQbRlK) will provide them with rich and meaningful context across the entire incident management cycle and helps them identify cyber risks in a timely manner.

A detailed analysis of the incident is available on Securelist (https://apo-opa.co/46mfGGS).

Kaspersky Managed Detection and Response service monitors suspicious activity and helps organisations respond swiftly to minimise impact. This is a part of Kaspersky Security Services, a team delivering hundreds of information security projects every year for Fortune Global 500 organisations: incident response, managed detection, SOC consulting, red teaming, penetration testing, application security, digital risks protection.

Distributed by APO Group on behalf of Kaspersky.

Home  Facebook

Energy

Venezuela Energy Week Confirms 19 August Date for Houston Industry Showcase

Published

on

Officially supported by Venezuela’s Ministry of Hydrocarbons and national oil company PDVSA, the Houston Industry Showcase will take place on 19 August, convening U.S. energy leaders ahead of Venezuela Energy Week 2027 in Caracas

HOUSTON, United States of America, August 10, 2026/APO Group/ –The organizers of Venezuela Energy Week (VEW) have confirmed that the Houston Industry Showcase will take place on 19 August 2026 at The Post Oak Hotel. Officially supported by Venezuela’s Ministry of Hydrocarbons and national oil company PDVSA, the event will bring together U.S. energy companies, investors and policymakers to explore commercial opportunities ahead of Venezuela Energy Week 2027 in Caracas in February.

The showcase will feature Minister of Hydrocarbons Paula Henao as a keynote speaker, providing an update on Venezuela’s energy priorities, investment agenda and opportunities for international partnership. Her participation underscores the country’s commitment to strengthening engagement with global industry as it seeks to expand production and unlock new upstream investment.

Bringing together exploration and production companies, independent operators, oilfield service providers, engineering firms, technology companies and financial institutions, the Houston Industry Showcase will examine opportunities across exploration, production optimization, infrastructure rehabilitation and field development.

As Venezuela works to increase oil and gas production, demand is expected to grow for the technical expertise of U.S. service providers in drilling, well intervention, completion services, production optimization, artificial lift, digital oilfield technologies and infrastructure rehabilitation. Houston-based industry leaders – including SLB, Halliburton, Baker Hughes, Weatherford and a broad network of EPC contractors, equipment manufacturers and specialized service companies – are well positioned to support the modernization of mature fields, improve operational efficiency and deliver the technologies and services needed for future upstream projects.

The Houston event follows a successful Industry Showcase in London, which brought together international investors, operators and energy service companies to explore Venezuela’s evolving investment landscape. Building on that momentum, the Houston edition will deepen engagement with the U.S. energy industry and strengthen commercial dialogue ahead of Venezuela Energy Week 2027.

Venezuela Energy Week – the country’s largest energy investment platform to date – has been confirmed for 22–25 February 2027 in Caracas. Organized by Energy Capital & Power, the event will bring together government leaders, investors and industry stakeholders from across the global energy value chain.

To register for the Houston Industry Showcase on August 19, visit https://apo-opa.co/4g0TncR. To learn more about delegate, sponsorship and partnership opportunities for the showcase or to secure your place at Venezuela Energy Week 2027 in Caracas, contact info@venezuelaenergyweek.com.

Supporting Venezuela’s Earthquake Recovery
Our thoughts are with the people and communities affected by the recent earthquakes in Venezuela. As the country begins the long process of recovery, we encourage members of the global energy community to support relief and reconstruction efforts through the CAF Recovery and Reconstruction Fund for Venezuela, which channels contributions from individuals, companies and organizations to emergency assistance, essential services and long-term rebuilding efforts.

To learn more or make a contribution, please visit the CAF Recovery and Reconstruction Fund for Venezuela (https://apo-opa.co/4hkvteE).

Distributed by APO Group on behalf of Energy Capital & Power.

Continue Reading

Business

Islamic Development Bank Institute (IsDBI) Secures New Patent for Smart Stabilization System from Intellectual Property Office of Singapore

Published

on

IsDBI

The Smart Stabilization System is a pioneering digital market infrastructure designed to stabilize asset markets by intelligently managing supply-demand gaps and mitigating excessive volatility

JEDDAH, Saudi Arabia, August 10, 2026/APO Group/ –The Islamic Development Bank Institute (IsDBI) (https://IsDBInstitute.org) is pleased to announce that the Intellectual Property Office of Singapore (IPOS) has granted a new patent for its innovative Smart Stabilization System.

 

The patent was granted on 10 July 2026 under Singapore Patent No. 10202250873B for the invention titled “A Computer Network Stabilization System and Method.” The patent application was filed on 1 September 2022 and was formally granted following a comprehensive review process.

This achievement reflects our commitment to translating pioneering research into practical solutions that contribute to economic resilience and sustainable development

The Smart Stabilization System is a pioneering digital market infrastructure designed to stabilize asset markets by intelligently managing supply-demand gaps and mitigating excessive volatility. Leveraging sophisticated algorithms and advanced simulation models, the system is designed to anticipate supply and demand imbalances and implement programmable stabilization measures before they escalate into market disruptions.

Unlike traditional stabilization mechanisms that rely on capital reserves, buffer funds, or external interventions, the Smart Stabilization System introduces a next-generation framework for achieving autonomous market stabilization through proactive and programmed stabilization mechanisms. By incorporating distributed ledger technology and cryptographic trust mechanisms, the platform enhances transparency, trust, and operational resilience for digital asset and commodity markets.

The successful patent grant reflects IsDBI’s growing contribution to technological innovation and its commitment to developing knowledge-based solutions that address contemporary economic and development challenges.

Since filing the patent application back in 2022, the Institute has continued to advance the Smart Stabilization System through ongoing development and testing, aimed to expand its practical applications and support future capitalization opportunities. These advancements have positioned the system as a potentially transformative solution for enhancing stability and resilience in increasingly digital and interconnected economies.

Commenting on this occasion, Dr. Sami Al-Suwailem, Acting Director General of IsDBI, said, “The grant of this patent by the Intellectual Property Office of Singapore further strengthens the Institute’s position as a leader in developing innovative knowledge-based solutions that leverage modern technologies to address complex development challenges. This achievement reflects our commitment to translating pioneering research into practical solutions that contribute to economic resilience and sustainable development.”

Distributed by APO Group on behalf of Islamic Development Bank Institute (IsDBI).

Continue Reading

Business

Liberia to Preview Next Oil & Gas Licensing Round Strategy at Houston Investor Day

Published

on

The Liberia Petroleum Regulatory Authority will host operators, investors and partners in Houston on August 19 to preview future licensing opportunities and showcase the exploration potential of its offshore basins

HOUSTON, United States of America, August 7, 2026/APO Group/ –The Liberia Petroleum Regulatory Authority (LPRA) will present its strategy for the country’s next offshore licensing round at Liberia Investor Day Houston on August 19, bringing together international exploration companies, investors, service providers and energy leaders to discuss the next phase of Liberia’s upstream development.

Hosted in partnership with Energy Capital & Power, the event will provide a platform for the LPRA, led by Director General Hon. Marilyn T. Logan, to outline Liberia’s regulatory framework, investment priorities and plans to attract new participation across the country’s offshore sector. Discussions will focus on upcoming licensing opportunities, exploration prospects and the subsurface data supporting future investment decisions.

Liberia’s offshore sector is entering a new phase of exploration activity, with renewed international participation and a growing pipeline of opportunities. Following the award and ratification of eight Production Sharing Contracts in 2025, Liberia has re-established itself as a frontier exploration destination, with international operators advancing work programs designed to further evaluate the country’s petroleum potential. TotalEnergies is progressing exploration activities that include offshore geochemical surveys, 3D seismic acquisition and seabed mapping, while Oranto Petroleum has also signed contracts to explore Liberia’s offshore.

At the Liberia Investor Day Houston, the LPRA will provide industry stakeholders with insight into the priorities shaping the next licensing round, including the anticipated process, qualification requirements, available acreage and access to technical data. The engagement will give prospective investors a clearer view of Liberia’s exploration landscape and the opportunities emerging across its offshore basins.

The event will also facilitate direct dialogue between LPRA and the global upstream community, connecting companies with policymakers and industry stakeholders involved in shaping Liberia’s next chapter of petroleum development.

As exploration companies continue to seek new frontier opportunities, Liberia Investor Day Houston will highlight the role of regulatory certainty, data availability and strategic partnerships in unlocking long-term investment across Liberia’s offshore sector.

Registration is now open for attendees. Companies interested in Liberia’s emerging offshore opportunities are invited to join LPRA, investors and upstream leaders in Houston for insights into the country’s licensing strategy and exploration outlook. For more information contact info@energycapitalpower.com.

Distributed by APO Group on behalf of Energy Capital & Power.

 

Continue Reading

Trending