---
title: "Cyber Security News Update, Week 9 of 2022 | DuoCircle"
description: "Since the online world is vulnerable to myriad security threats, organizations need to be abreast of the latest cybersecurity updates to protect their."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-9-of-2022/"
---

Quick Answer

Week 9, 2022 cyber news: CISA adds Zabbix CVE-2022-23131 and CVE-2022-23134 to KEV (auth bypass to admin RCE on versions before 5.4.8/5.0.18/4.0.36; fixed in 6.0.0beta2/5.4.9/5.0.19/4.0.37); PhishLabs reports social media attacks doubled in 2021 (+103%), with hybrid-vishing email up 554% and finance phishing up 27.5%; Mobile Mentor finds 36% of employees bypass security policies and 72% prioritize privacy over company security; Avanan flags a Microsoft Teams campaign dropping DLL files via chat attachments; US DOJ secures a guilty plea from California-based broker Carlos Guerrero for selling Italian and Israeli surveillance tools; ENISA and CERT-EU report APT activity against EU bodies up 60% in 2020 and 30% in 2021.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%209%20of%202022&url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F&title=Cyber%20Security%20News%20Update%2C%20Week%209%20of%202022 "Share on Reddit") [ ](mailto:?subject=Cyber%20Security%20News%20Update%2C%20Week%209%20of%202022&body=Check out this article: undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F "Share via Email") 

![Cyber Security](https://media.mailhop.org/duocircle/images/2022/03/spf-permerror-0260.jpg) 

Since the online world is vulnerable to myriad **security threats**, organizations need to be abreast of the [latest cybersecurity updates](/announcements) to protect their information systems better. Following are the top headlines this week to keep you updated on the most recent cyber developments.

## CISA Reports Two Critical Flaws in Zabbix

The United States Cybersecurity and Infrastructure Security Agency (CISA) has recently included two new critical flaws in its Known [Exploited Vulnerabilities Catalog](https://www.securityweek.com/cisa-warns-attacks-exploiting-recent-vulnerabilities-zabbix-monitoring-tool). These vulnerabilities were found in the Zabbix enterprise monitoring solution. The two vulnerabilities dubbed CVE-2022-23131 and CVE-2022-23134 could be used to gain administrator privileges by **evading authentication**. _Having gained admin access, the adversaries would quickly execute arbitrary commands_.

_Organizations use the open-source monitoring platform Zabbix to collect and centralize data within their network_. The two vulnerabilities in Zabbix were first discovered by **cybersecurity experts** at SonarSource. While no instances suggest the exploitation of these vulnerabilities, public proof-of-concept (POC) exploits do exist. SonarSource also reported that Zabbix is a popular target for threat actors and that an anonymous exploit acquisition company seems to be interested in Zabbix.

The vulnerabilities affect all Zabbix versions before 5.4.8, 5.0.18, and 4.0.36\. However, these vulnerabilities were eventually patched in Zabbix Web Frontend 6.0.0beta2, 5.4.9, 5.0.19, and 4.0.37 versions. _CISA recommends all users update to the latest Zabbix Web Frontend version to ensure [ransomware protection](/email-security/5-ways-you-protect-your-business-from-ransomware/)_.

[![Social Media Attacks](https://media.mailhop.org/duocircle/images/2022/03/spf-permerror-0261.jpg)](https://media.mailhop.org/duocircle/images/2022/03/spf-permerror-0261.jpg)

## Massive Increase in Social Media Attacks on Financial Sector

Ever since the Covid-19 pandemic began, cyberattacks have witnessed a [massive surge](https://web.archive.org/web/20230130215301/https://cyware.com/news/social-media-attacks-double-financial-sector-suffers-most-report-69981470). In its Quarterly Threat Trends & Intelligence Report, _PhishLabs reported that social media threats doubled in 2021_. The report mentioned that there had been a **103% surge** in social media attacks from January to December 2021\. _On average, organizations underwent 68 attacks per month by year-end_. The PhishLabs report provided a detailed analysis of the impacts of social media threats on the financial sector. Some of the most important findings include:

- While social media attacks targeting financial institutions were 33.8% in Q1, they **increased to 61.3%** in Q4.
- From Q1 to Q4, there has been a **554% surge** in hybrid vishing attacks via email.
- Reportedly, the [phishing attacks](/resources/identify-and-neutralize-phishing-attacks) targeting the financial sector (banking, payment services, credit unions, and other business industries) have increased by 27.5% from Q1 to Q4 2021.
- In Q4, banking and payment services were targeted the most by attacks, with an attack percentage of 38.1% and 12.7%, respectively.

_The attacks on the financial sector represented 82.7% of dark web activities in 2021_. Thus, the industry was one of the primary targets of **phishing attacks**. These findings call for stricter layers of defense against cybersecurity threats.

## Call For Employers to Strengthen Endpoint Ecosystem

_A recent study by Mobile Mentor reports that 36% of employees try and find ways of not dealing with security policies_, and 72% of [employees prioritize their privacy](https://www.helpnetsecurity.com/2022/02/22/employees-security-policies/) over the company’s cybersecurity. These shocking _statistics reflect why employers find it extremely difficult to **eliminate human error** from their cybersecurity picture_. The study further highlights the grey areas of organizational security involving lack of password hygiene, inefficient onboarding of new employees, etc.

In particular, the report looks at the endpoint ecosystem (all applications, devices, and tools employees use in their organizations) to understand employees’ perception of productivity, privacy, and personal well-being in the current workplace. With the ongoing culture of working remotely and [the Great Resignation](https://www.phishprotection.com/blog/the-surge-of-linkedin-phishing-attacks-courtesy-of-the-great-resignation/) as an addition, _employers are still figuring out ways of supporting their employees_. Along with several other significant findings, the study concluded that employers need to prioritize each component in the endpoint ecosystem to ensure the company’s [email security](/).

## Beware of Malicious Microsoft Teams Attachments

Microsoft Teams is a popular option for remote working and has **over 270 million** monthly active users. However, in recent times, adversaries frequently use the platform to target users by attaching malicious executables to conversations. Cybersecurity experts at Avanan have spotted thousands of such attacks since January where [adversaries compromise a user account](https://web.archive.org/web/20220315201024/https://cyware.com/news/hackers-target-microsoft-teams-users-in-chats-dace2d9e) and use this to send malicious executable files to participants. _Opening these messages installs DLL files in the user’s device and creates a shortcut link instructing the device to self-administer_.

Since Microsoft Teams is one of the most common platforms used for official meetings today, securing it against such attack vectors is crucial. Therefore, _it is recommended that users implement additional layers of security_, such as verifying the authenticity of files in a sandbox before downloading them. Further, organizations should [train employees](/phishing-awareness-training) to report suspicious files and use [email gateway security](/content/email-gateway-service/email-gateway-free) applications.

## US DoJ to Sentence a Malware Selling Businessman

_The US Department of Justice (DoJ) recently arrested a Mexico-based businessman for selling and using malware and surveillance tools in the United States and Mexico_. The alleged Carlos Guerrero (48) is a resident of Chula Vista, California, and confessed to [using and selling hacking tools](https://www.zdnet.com/article/businessman-admits-to-working-as-spyware-broker-in-us-and-mexico/) manufactured by Italy and Israel-based private companies. Guerrero appeared in a San Diego federal court where he was accused of owning multiple companies in Mexico and the US that operated as sales brokers for surveillance and interception tools.

Reportedly, _Guerrero’s firms worked with Mexican government clientele private and commercial customers_. Guerrero’s earliest association with such illegal activities dates back to 2014-15 when he worked with an Italian company creating _hacking and location tracking devices_. Eventually, he expanded his business and worked with surveillance software developers in Israel and other areas. Guerrero has helped shape many **surveillance crimes**. For instance, he was once a facilitator to a Mexican Mayor who hacked his opponent’s Hotmail, iCloud, and Twitter accounts. While this hardcore cybercriminal awaits his sentence, it is a given that he shall face a penalty of up to five years with a **fine of $250,000**.

[![cyberattacks](https://media.mailhop.org/duocircle/images/2022/03/spf-permerror-0262.jpg)](https://media.mailhop.org/duocircle/images/2022/03/spf-permerror-0262.jpg)

## Cybersecurity Best Practices According to ENISA and CERT-EU

In the interest of EU-based private and public organizations, the European Union Agency for Cybersecurity (ENISA) and CERT-EU have released a set of [cybersecurity best practices](https://www.helpnetsecurity.com/2022/02/21/eu-cybersecurity-best-practices/). A report by ENISA states three significant factors causing cyberattacks on private and public organizations in the EU. These include [ransomware attacks](/phishing-protection/ransomware-attacks-your-organizations-ability-to-function/), monetization of cybercrime and related malicious activities, and attacks on critical infrastructure. _The ENISA’s 2021 Annual Threat Landscape report analyses these three threat factors with great elaboration_.

In addition, the CERT-EU reported in its Threat Landscape Report Volume 1 that APTs against the EU institutions, bodies, and agencies (EUIBAs) have **increased by 60%** in 2020\. This figure further increased by 30% in 2021\. With such alarming rates of attacks, the ENISA and CERT-EU recommend private and public organizations to follow at least some basic [cybersecurity practices](/msp-email-security/cybersecurity-best-practices-every-msp-must-adopt/).

## Topics

NewsSecurityUpdates 

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F) [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%209%20of%202022&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-9-of-2022%2F) Copy 

Related Articles

- [ ![spam](https://media.mailhop.org/duocircle/images/2021/07/sender-policy-framework-7535.jpg)  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam News ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)
- [ ![Cyber Security](https://media.mailhop.org/duocircle/images/2022/01/spf-flattening-7011.jpg)  Cyber Security News Update, Week 1 of 2022 News ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)
- [ ![Cybersecurity](https://media.mailhop.org/duocircle/images/2023/01/spf-validator-6824.jpg)  Cybersecurity News Update, Week 1 of 2023 News ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)
- [ ![cybersecurity](https://media.mailhop.org/duocircle/images/2024/01/phishing-protection.jpg)  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\] News ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

## Related Articles

[  News 3m  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam  Jul 20, 2021 ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)[  News 6m  Cyber Security News Update, Week 1 of 2022  Jan 7, 2022 ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)[  News 7m  Cybersecurity News Update, Week 1 of 2023  Jan 1, 2023 ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)[  News 5m  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\]  Jan 4, 2024 ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 9 of 2022","description":"Since the online world is vulnerable to myriad security threats, organizations need to be abreast of the latest cybersecurity updates to protect their.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-9-of-2022/","datePublished":"2022-03-04T17:44:58.000Z","dateModified":"2025-05-26T12:27:55.000Z","dateCreated":"2022-03-04T17:44:58.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-9-of-2022/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1081,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2022/03/spf-permerror-0260.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"News"},{"@type":"ListItem","position":3,"name":"Cyber Security News Update, Week 9 of 2022","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-9-of-2022/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"News","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Cyber Security News Update, Week 9 of 2022","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-9-of-2022/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 9 of 2022","description":"Since the online world is vulnerable to myriad security threats, organizations need to be abreast of the latest cybersecurity updates to protect their.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-9-of-2022/","datePublished":"2022-03-04T17:44:58.000Z","dateModified":"2025-05-26T12:27:55.000Z","dateCreated":"2022-03-04T17:44:58.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-9-of-2022/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1081,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2022/03/spf-permerror-0260.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
