Tag: backdoor
-
D-Link: Versteckte Backdoor in 16 Routermodellen entdeckt
Angreifer können aus der Ferne den Telnet-Dienst betroffener D-Link-Router aktivieren. Auch die Admin-Zugangsdaten sind offenbar in der Firmware hinte… First seen on golem.de Jump to article: www.golem.de/news/d-link-versteckte-backdoor-in-16-routermodellen-entdeckt-2406-186277.html
-
Hackers Exploit Legitimate Websites to Deliver BadSpace Windows Backdoor
Legitimate-but-compromised websites are being used as a conduit to deliver a Windows backdoor dubbed BadSpace under the guise of fake browser updates…. First seen on thehackernews.com Jump to article: thehackernews.com/2024/06/hackers-exploit-legitimate-websites-to.html
-
WinorDLL64: Backdoor aus dem Lazarus Arsenal?
egion und die Überschneidungen in Verhalten und Code lassen vermuten, dass das Tool von der berüchtigten, mit Nordkorea verbündeten APT-Gruppe verwend… First seen on welivesecurity.com Jump to article: www.welivesecurity.com/deutsch/2023/02/23/winordll64-backdoor-aus-dem-lazarus-arsenal/
-
ExCobalt Cybercrime group targets Russian organizations in multiple sectors
The cybercrime group ExCobalt targeted Russian organizations in multiple sectors with a previously unknown backdoor known as GoRed. Positive Technolog… First seen on securityaffairs.com Jump to article: securityaffairs.com/164838/breaking-news/excobalt-cybercrime-group-targets-russian-orgs.html
-
Attacks with new GoRed backdoor aimed at Russia
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/attacks-with-new-gored-backdoor-aimed-at-russia
-
Crooks plant backdoor in software used by courtrooms around the world
First seen on arstechnica.com Jump to article: arstechnica.com/
-
New Phishing Campaign Deploys WARMCOOKIE Backdoor Targeting Job Seekers
Cybersecurity researchers have disclosed details of an ongoing phishing campaign that leverages recruiting- and job-themed lures to deliver a Windows-… First seen on thehackernews.com Jump to article: thehackernews.com/2024/06/new-phishing-campaign-deploys.html
-
Novel BadSpace Windows backdoor spread via hacked websites
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/novel-badspace-windows-backdoor-spread-via-hacked-websites
-
New BadSpace Backdoor Deployed in Drive-By Attacks
The BadSpace backdoor is being distributed via drive-by attacks involving infected websites and JavaScript downloaders. The post pace backdoor is bein… First seen on securityweek.com Jump to article: www.securityweek.com/new-badspace-backdoor-deployed-in-drive-by-attacks/
-
Hidden Backdoor in D-Link Routers Let Attacker Login as Admin
A critical vulnerability has been discovered in several models of D-Link wireless routers, allowing unauthenticated attackers to gain administrative a… First seen on gbhackers.com Jump to article: gbhackers.com/hidden-backdoor-in-d-link-routers/
-
Chinese Hackers Leveraging ‘Noodle RAT’ Backdoor
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/chinese-noodle-rat-backdoor/
-
Suspected supply chain attack backdoors courtroom recording software
First seen on theregister.com Jump to article: www.theregister.com/2024/05/24/suspected_supply_chain_attack_backdoors/
-
WarmCookie Gives Cyberattackers Tasty New Backdoor for Initial Access
The fresh-baked malware is being widely distributed, but still specifically targets individuals with tailored lures. It’s poised to evolve into a bigg… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/warmcookie-cyberattackers-backdoor-initial-access
-
Beware WARMCOOKIE Backdoor Knocking Your Inbox
WARMCOOKIE is a new Windows backdoor that is deployed by a phishing effort with a recruiting theme dubbed REF6127. The WARMCOOKIE backdoor can be used… First seen on gbhackers.com Jump to article: gbhackers.com/beware-warmcookie-backdoor/
-
Linux maintainers were infected for 2 years by SSH-dwelling backdoor with huge reach
First seen on arstechnica.com Jump to article: arstechnica.com/
-
Andariel Hackers Target South Korean Institutes with New Dora RAT Malware
The North Korea-linked threat actor known as Andariel has been observed using a new Golang-based backdoor called Dora RAT in its attacks targeting edu… First seen on thehackernews.com Jump to article: thehackernews.com/2024/06/andariel-hackers-target-south-korean.html
-
New Warmcookie Windows backdoor pushed via fake job offers
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/new-warmcookie-windows-backdoor-pushed-via-fake-job-offers/
-
Sicherheitslücke in xz – Backdoor in Linux-Archivbibliothek macht Systeme angreifbar
First seen on computerbase.de Jump to article: www.computerbase.de/2024-03/linux-backdoor-kritische-sicherheitsluecke-macht-systeme-angreifbar
-
Popular WordPress Plugins Leave Millions Open to Backdoor Attacks
First seen on hackread.com Jump to article: hackread.com/popular-wordpress-plugins-backdoor-attack/
-
Intrusions with novel Dora RAT backdoor deployed by Andariel
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/intrusions-with-novel-dora-rat-backdoor-deployed-by-andariel
-
In Other News: Apple WPS Surveillance, Canadian Gov Wants Backdoors, NIST AI Program
Noteworthy stories that might have slipped under the radar: Apple WPS can be abused for surveillance, Canadian government wants backdoors, NIST launch… First seen on securityweek.com Jump to article: www.securityweek.com/in-other-news-apple-wps-surveillance-canadian-gov-wants-backdoors-nist-ai-program/
-
Courtroom Recording Software Vulnerable to Backdoor Attacks
Rapid7 warned that users of Justice AV Solutions (JAVS) Viewer v8.3.7 recording software are at high risk of stolen credentials and having malware ins… First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/courtroom-software-vulnerable/
-
Critical WordPress Plugin Flaws Exploited to Inject Malicious Scripts and Backdoors
Malicious campaign exploits high-severity XSS flaws in three WordPress plugins to backdoor websites. The post s campaign exploits high-severity XSS fl… First seen on securityweek.com Jump to article: www.securityweek.com/critical-wordpress-plugin-flaws-exploited-to-inject-malicious-scripts-and-backdoors/
-
Russia’s Turla APT Abuses MSBuild to Deliver TinyTurla Backdoor
A threat campaign luring users with malicious documents related to human rights and public notices is aimed at giving the Russia-backed threat group a… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/russia-turla-apt-msbuild-tinyturla-backdoor
-
JAVS Courtroom Audio-Visual Software Installer Serves Backdoor
Backdoored JAVS courtroom recording and management software installer puts thousands at risk of complete takeover. The post ed JAVS courtroom recordin… First seen on securityweek.com Jump to article: www.securityweek.com/javs-courtroom-audio-visual-software-installer-serves-backdoor/
-
Kimsuky APT Deploying Linux Backdoor Gomir in South Korean Cyber Attacks
The Kimsuky (aka Springtail) advanced persistent threat (APT) group, which is linked to North Korea’s Reconnaissance General Bureau (RGB), has been ob… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/kimsuky-apt-deploying-linux-backdoor.html
-
APT41: The threat of KeyPlug against Italian industries
Tinexta Cyber’s Zlab Malware Team uncovered a backdoor known as KeyPlug employed in attacks against several Italian industries During an extensive inv… First seen on securityaffairs.com Jump to article: securityaffairs.com/163598/apt/apt41-keyplug-targets-italian-industries.html
-
Turla Group Deploys LunarWeb and LunarMail Backdoors in Diplomatic Missions
An unnamed European Ministry of Foreign Affairs (MFA) and its three diplomatic missions in the Middle East were targeted by two previously undocumente… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/turla-group-deploys-lunarweb-and.html
-
Novel Linux backdoor used in Kimsuky attacks
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/novel-linux-backdoor-used-in-kimsuky-attacks
-
North Korea-linked Kimsuky used a new Linux backdoor in recent attacks
Symantec warns of a new Linux backdoor used by the North Korea-linked Kimsuky APT in a recent campaign against organizations in South Korea. Symantec… First seen on securityaffairs.com Jump to article: securityaffairs.com/163364/apt/kimsuky-new-linux-backdoor.html

