Tag: backdoor
-
SWARM Switchable Backdoor Attack Against Pre-trained Models
In the big data era, pre-training large vision transformer (ViT) models on massive datasets has become prevalent for enhanced performance on downstrea… First seen on gbhackers.com Jump to article: gbhackers.com/swarm-backdoor-attack-pretrained-models/
-
Turla APT Group Suspected of Utilizing Tiny BackDoor Exploiting MSBuild for Stealthy Attacks
Cyble Research and Intelligence Labs (CRIL) has discovered a sophisticated cyber campaign employing malicious LNK files, potentially distributed throu… First seen on thecyberexpress.com Jump to article: thecyberexpress.com/new-turla-apt-groups-tiny-backdoor-tactics/
-
Turla APT used two new backdoors to infiltrate a European ministry of foreign affairs
Russia-linked Turla APT allegedly used two new backdoors, named Lunar malware and LunarMail, to target European government agencies. ESET researchers … First seen on securityaffairs.com Jump to article: securityaffairs.com/163314/apt/turla-apt-new-backdoors.html
-
Kinsing Malware Attacking Apache Tomcat Servers To Deploy Cryptominers
Kinsing malware, known for exploiting vulnerabilities on Linux cloud servers to deploy backdoors and cryptominers, has recently expanded its target to… First seen on gbhackers.com Jump to article: gbhackers.com/kinsing-malware-apache-tomcat-servers/
-
New Linux Backdoor Attacking Linux Users Via Installation Packages
Linux is widely used in numerous servers, cloud infrastructure, and Internet of Things devices, which makes it an attractive target for gaining unauth… First seen on gbhackers.com Jump to article: gbhackers.com/linux-backdoor-attack-installation-packages/
-
Russian hackers use new Lunar malware to breach a European govt’s agencies
Security researchers discovered two previously unseen backdoors dubbed LunarWeb and LunarMail that were used to compromise a European government’s dip… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/russian-hackers-use-new-lunar-malware-to-breach-a-european-govts-agencies/
-
Novel backdoors seen in use against European government agencies
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/novel-backdoors-seen-in-use-against-european-government-agencies
-
Kimsuky hackers deploy new Linux backdoor in attacks on South Korea
The North Korean hacker group Kimsuki has been using a new Linux malware called Gomir that is a version of the GoBear backdoor delivered via trojanize… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/kimsuky-hackers-deploy-new-linux-backdoor-in-attacks-on-south-korea/
-
Australia’s spies and cops want ‘accountable encryption’ – aka access to backdoors
First seen on theregister.com Jump to article: www.theregister.com/2024/04/25/asio_afp_accountable_encryption/
-
Nation-state hackers exploit Cisco firewall 0-days to backdoor government networks
First seen on arstechnica.com Jump to article: arstechnica.com/
-
Breach Roundup: Kimsuky Serves Linux Trojan
Also: Turla Targets European Missions and Google Patches Chrome Zero-Days. This week, hackers used a Linus backdoor and a Microsoft client management … First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/breach-roundup-kimsuky-serves-linux-trojan-a-25246
-
Malicious PyPI ‘requests’ fork hides backdoor in PNG file
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/malicious-pypi-requests-fork-hides-backdoor-in-png-file
-
Malicious PyPi Requests Fork Hides Backdoor In PNG File
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/35880/Malicious-PyPi-Requests-Fork-Hides-Backdoor-In-PNG-File.html
-
Chinese Hackers Deployed Backdoor Quintet to Down MITRE
First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/chinese-hackers-deployed-backdoor-quintet-to-down-mitre
-
PyPi package backdoors Macs using the Sliver pen-testing suite
A new package mimicked the popular ‘requests’ library on the Python Package Index (PyPI) to target macOS devices with the Sliver C2 adversary framewor… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/pypi-package-backdoors-macs-using-the-sliver-pen-testing-suite/
-
Backdoors and Miners Amid eScan Antivirus Backdoor Exploit
Recently, a wave of malware attacks has surfaced, exploiting vulnerabilities in the update mechanism of the eScan antivirus software. This eScan antiv… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/05/backdoors-and-miners-amid-escan-antivirus-backdoor-exploit/
-
Iranian Cyberspies Hit Targets With New Backdoors
Iranian state-sponsored group APT42 is targeting NGOs, government, and intergovernmental organizations with two new backdoors. The post state-sponsore… First seen on securityweek.com Jump to article: www.securityweek.com/iranian-cyberspies-target-governments-ngos-with-new-backdoors/
-
Hackers Use Custom Backdoor Powershell Scripts to Attack Windows Machines
The Damselfly Advanced Persistent Threat (APT) group, also known as APT42, has been actively utilizing custom backdoor variants, NiceCurl and TameCat,… First seen on gbhackers.com Jump to article: gbhackers.com/hackers-use-custom-backdoor/
-
Smoke and (screen) mirrors: A strange signed backdoor
Tags: backdoorFirst seen on scmagazine.com Jump to article: www.scmagazine.com/native/smoke-and-screen-mirrors-a-strange-signed-backdoor
-
eScan Antivirus Update Mechanism Exploited to Spread Backdoors and Miners
A new malware campaign has been exploiting the updating mechanism of the eScan antivirus software to distribute backdoors and cryptocurrency miners li… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/escan-antivirus-update-mechanism.html
-
Cisco Zero-Days Anchor ‘ArcaneDoor’ Cyber-Espionage Campaign
Attacks by a previously unknown threat actor leveraged two bugs in firewall devices to install custom backdoors on several government networks globall… First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/cisco-zero-days-arcanedoor-cyberespionage-campaign
-
Nation-State Hackers Exploit Cisco Firewall Zero Days To Backdoor Government Networks
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/35815/Nation-State-Hackers-Exploit-Cisco-Firewall-Zero-Days-To-Backdoor-Government-Networks.html
-
Attacker Social-Engineered Backdoor Code Into XZ Utils
Unlike the SolarWinds and CodeCov incidents, all that it took for an adversary to nearly pull off a massive supply chain attack was some slick social … First seen on darkreading.com Jump to article: www.darkreading.com/application-security/attacker-social-engineered-backdoor-code-into-xz-utils
-
New Wpeeper Android malware hides behind hacked WordPress sites
A new Android backdoor malware named ‘Wpeeper’ has been spotted in at least two unofficial app stores mimicking the Uptodown App Store, a popular thir… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/new-wpeeper-android-malware-hides-behind-hacked-wordpress-sites/
-
Hackers Target Middle East Governments with Evasive CR4T Backdoor
Government entities in the Middle East have been targeted as part of a previously undocumented campaign to deliver a new backdoor dubbed CR4T.Russian … First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/hackers-target-middle-east-governments.html
-
FIN7 Cybercrime Group Targeting U.S. Auto Industry with Carbanak Backdoor
The infamous cybercrime syndicate known as FIN7 has been linked to a spear-phishing campaign targeting the U.S. automotive industry to deliver a known… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/fin7-cybercrime-group-targeting-us-auto.html
-
XZ backdoor discovery reveals Linux supply chain attack
A maintainer for XZ, a popular open source compression library for Linux distributions, compromised the open source project over the course of two yea… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366577602/XZ-backdoor-discovery-reveals-Linux-supply-chain-attack
-
Open source alert over intentionally placed backdoor
A backdoor in the open source XZ Utils data compression library could have led to widespread compromise across the Linux ecosystem – and the community… First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366577513/Open-source-alert-over-intentionally-placed-backdoor

