Tag: backdoor
-
ToneShell Backdoor Targets IISS Defence Summit Attendees in Latest Espionage Campaign
Cyber espionage continues to intertwine with global strategy as the ToneShell backdoor, linked to the notorious Mustang Panda group, reemerges. In a r… First seen on securityonline.info Jump to article: securityonline.info/toneshell-backdoor-targets-iiss-defence-summit-attendees-in-latest-espionage-campaign/
-
New Cross-Platform Malware KTLVdoor Discovered in Attack on Chinese Trading Firm
The Chinese-speaking threat actor known as Earth Lusca has been observed using a new backdoor dubbed KTLVdoor as part of a cyber attack targeting an u… First seen on thehackernews.com Jump to article: thehackernews.com/2024/09/new-cross-platform-malware-ktlvdoor.html
-
North Korean Hackers Targets Job Seekers with Fake FreeConference App
North Korean threat actors have leveraged a fake Windows video conferencing application impersonating FreeConference.com to backdoor developer systems… First seen on thehackernews.com Jump to article: thehackernews.com/2024/09/north-korean-hackers-targets-job.html
-
China’s ‘Earth Lusca’ Propagates Multiplatform Backdoor
First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/chinas-earth-lusca-propagates-multiplatform-backdoor
-
New Loki Backdoor Attacking macOS Systems
Cody Thomas developed Apfell, an open-source macOS post-exploitation framework, in 2018 and evolved into Mythic, a cross-platform framework that addre… First seen on gbhackers.com Jump to article: gbhackers.com/loki-macos-attack/
-
Threat Actors Using New Malware Toolkit That Involves IIS Backdoor, DNS Tunneling
The Iranian threat actor APT34, also known as GreenBug, has recently launched a new campaign targeting Iraqi government entities by employing a custom… First seen on gbhackers.com Jump to article: gbhackers.com/iis-backdoor-dns-tunneling/
-
NoiseAttack is a Novel Backdoor That Uses Power Spectral Density For Evasion
Tags: backdoorNoiseAttack is a new method of secretly attacking deep learning models. It uses triggers made from White Gaussian Noise to create several targeted cla… First seen on gbhackers.com Jump to article: gbhackers.com/noiseattack-is-a-novel-backdoor/
-
New BugSleep Backdoor Deployed in Recent MuddyWater Campaigns
ey Findings Introduction MuddyWater, an Iranian threat groupaffiliatedwith the Ministry of Intelligence and Security (MOIS), is known to be active sin… First seen on research.checkpoint.com Jump to article: research.checkpoint.com/2024/new-bugsleep-backdoor-deployed-in-recent-muddywater-campaigns/
-
APT60 Group Exploit WPS Office Flaw to Deploy SpyGlace Backdoor
A South Korea-aligned cyber espionage has been linked to the zero-day exploitation of a now-patched critical remote code execution flaw in Kingsoft WP… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/apt-c-60-group-exploit-wps-office-flaw.html
-
New KTLVdoor Backdoor Discovered in Multiplatform Intrusion Campaign Linked to Earth Lusca
Cybersecurity researchers from Trend Micro have uncovered a new and highly sophisticated multiplatform backdoor dubbed KTLVdoor, linked to the notorio… First seen on securityonline.info Jump to article: securityonline.info/new-ktlvdoor-backdoor-discovered-in-multiplatform-intrusion-campaign-linked-to-earth-lusca/
-
Earth Lusca adds multiplatform malware KTLVdoor to its arsenal
The Chinese-speaking threat actor Earth Lusca used the new backdoor KTLVdoor in an attack against a trading company in China. Trend Micro Researchers … First seen on securityaffairs.com Jump to article: securityaffairs.com/168078/malware/earth-lusca-malware-ktlvdoor.html
-
Researcher Identifies ToddyCat-Inspired APT Attack Leveraging ICMP Backdoor and Microsoft Exchange Flaws
Cybersecurity researchers at Kaspersky’s Global Emergency Response Team (GERT) have uncovered a sophisticated attack involving an ICMP backdoor, beari… First seen on securityonline.info Jump to article: securityonline.info/researcher-identifies-toddycat-inspired-apt-attack-leveraging-icmp-backdoor-and-microsoft-exchange-flaws/
-
macOS Version of HZ RAT Backdoor Targets Chinese Messaging App Users
Users of Chinese instant messaging apps like DingTalk and WeChat are the target of an Apple macOS version of a backdoor named HZ RAT.The artifacts alm… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/macos-version-of-hz-rat-backdoor.html
-
Earth Lusca Using Multiplatform Backdoor to Attack Windows Linux Machines
Earth Lusca is a suspected China-based cyber espionage group active since at least April 2019. Besides this, hackers often target Windows and Linux ma… First seen on gbhackers.com Jump to article: gbhackers.com/earth-lusca-using-multiplatform-backdoor/
-
Cisco warns of backdoor admin account in Smart Licensing Utility
Cisco has removed a backdoor account in the Cisco Smart Licensing Utility (CSLU) that can be used to log into unpatched systems with administrative pr… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisco-warns-of-backdoor-admin-account-in-smart-licensing-utility/
-
ToddyCat APT Abuses SMB, Exploits IKEEXT A Exchange RCE To Deploy ICMP Backdoor
ToddyCat is an APT group that has been active since December 2020, and primarily it targets the government and military entities in Europe and Asia. T… First seen on gbhackers.com Jump to article: gbhackers.com/toddycat-apt-exploits/
-
Godzilla Backdoor: A Stealthy Threat Targeting Atlassian Confluence Flaw (CVE-2023-22527)
A recent discovery by cybersecurity researchers at Trend Micro has unveiled a sophisticated new attack vector targeting Atlassian Confluence servers, … First seen on securityonline.info Jump to article: securityonline.info/godzilla-backdoor-a-stealthy-threat-targeting-atlassian-confluence-flaw-cve-2023-22527/
-
Iran-Backed Peach Sandstorm Hackers Deploy New Tickler Backdoor
The hacking subsidiary of the Iranian Islamic Revolutionary Guard Corps (RGC) has targeted satellite, communications, oil and gas and government secto… First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/iran-peach-sandstorm-hackers/
-
Hardware Backdoor Discovered in RFID Cards Used in Hotels and Offices Worldwide
Cybersecurity researchers have uncovered a hardware backdoor within a particular model of MIFARE Classic contactless cards that could allow authentica… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/hardware-backdoor-discovered-in-rfid.html
-
Iranian Hackers Using Multi-Stage Malware To Attack Govt And Defense Sectors Via LinkedIn
Microsoft has identified a new Iranian state-sponsored threat actor, Peach Sandstorm, deploying a custom multi-stage backdoor named Tickler. This back… First seen on gbhackers.com Jump to article: gbhackers.com/iranian-hackers-using-multi-stage-malware/
-
Fake Palo Alto GlobalProtect used as lure to backdoor enterprises
Threat actors target Middle Eastern organizations with malware disguised as the legitimate Palo Alto GlobalProtect Tool that can steal data and execut… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fake-palo-alto-globalprotect-used-as-lure-to-backdoor-enterprises/
-
Zutrittskontrolle: Unzählige RFID-Schlüsselkarten mit Backdoor ausgestattet
Tags: backdoorFirst seen on golem.de Jump to article: www.golem.de/news/zutrittskontrolle-unzaehlige-rfid-schluesselkarten-mit-backdoor-ausgestattet-2408-188238.html
-
WPS Office flaw exploited for SpyGlace backdoor delivery
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/wps-office-flaw-exploited-for-spyglace-backdoor-delivery
-
New Tickler malware used to backdoor US govt, defense orgs
The APT33 Iranian hacking group has used new Tickler malware to backdoor the networks of organizations in the government, defense, satellite, oil and … First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/new-tickler-malware-used-to-backdoor-us-govt-defense-orgs/
-
Iranian Hackers Use New Tickler Malware for Intelligence Gathering on Critical Infrastructure
The Iran-linked state-sponsored hacker group tracked as Peach Sandstorm has started using a new backdoor in attacks aimed at the US and UAE. The post … First seen on securityweek.com Jump to article: www.securityweek.com/iranian-hackers-use-new-tickler-malware-to-collect-intel-from-us-uae/
-
Taiwan University Under Fire From Unique DLL Backdoor
Tags: backdoorFirst seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/taiwan-university-under-fire-from-unique-dll-backdoor
-
Hackers Exploit PHP Vulnerability to Deploy Stealthy Msupedge Backdoor
A previously undocumented backdoor named Msupedge has been put to use against a cyber attack targeting an unnamed university in Taiwan.The most notabl… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/hackers-exploit-php-vulnerability-to.html
-
Iranian Hackers Use New Tickler Malware to Collect Intel From US, UAE
The Iran-linked state-sponsored hacker group tracked as Peach Sandstorm has started using a new backdoor in attacks aimed at the US and UAE. The post … First seen on securityweek.com Jump to article: www.securityweek.com/iranian-hackers-use-new-tickler-malware-to-collect-intel-from-us-uae/
-
Backdoor in Mifare Smart Cards Could Open Doors Around the World
Tags: backdoorFirst seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/backdoor-mifare-smart-cards-open/

