Tag: backdoor
-
KapeKa Backdoor: Russian Threat Actor Group’s Recent Attacks
In the realm of cybersecurity, vigilance is paramount. Recent discoveries have shed light on a previously undisclosed threat known as Kapeka, a versat… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/kapeka-backdoor-russian-threat-actor-groups-recent-attacks/
-
Fake job interviews target developers with new Python backdoor
A new campaign tracked as Dev Popper is targeting software developers with fake job interviews in an attempt to trick them into installing a Python re… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fake-job-interviews-target-developers-with-new-python-backdoor/
-
Russian APT Deploys New ‘Kapeka’ Backdoor in Eastern European Attacks
A previously undocumented flexible backdoor called Kapeka has been sporadically observed in cyber attacks targeting Eastern Europe, including Estonia … First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/russian-apt-deploys-new-kapeka-backdoor.html
-
Malicious Google Ads Pushing Fake IP Scanner Software with Hidden Backdoor
A new Google malvertising campaign is leveraging a cluster of domains mimicking a legitimate IP scanner software to deliver a previously unknown backd… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/malicious-google-ads-pushing-fake-ip.html
-
Critical WordPress Automatic Plugin Vulnerability Exploited to Inject Backdoors
A vulnerability in the WordPress Automatic plugin is being exploited to inject backdoors and web shells into websites. The post ability in the WordPre… First seen on securityweek.com Jump to article: www.securityweek.com/critical-wordpress-automatic-plugin-vulnerability-exploited-to-inject-backdoors/
-
Experts warn of an ongoing malware campaign targeting WP-Automatic plugin
A critical vulnerability in the WordPress Automatic plugin is being exploited to inject backdoors and web shells into websites WordPress security scan… First seen on securityaffairs.com Jump to article: securityaffairs.com/162364/hacking/wordpress-automatic-critical-flaw.html
-
Angriff aus Russland: Windows-Malware platziert Backdoor und verwischt Spuren
Die Kapeka genannte Schadsoftware wird mit der russischen Hackergruppe Sandworm in Verbindung gebracht. Sie ist als Erweiterung für Microsoft Word get… First seen on golem.de Jump to article: www.golem.de/news/angriff-aus-russland-windows-malware-platziert-backdoor-und-verwischt-spuren-2404-184257.html
-
Hackers hijacked the eScan Antivirus update mechanism in malware campaign
A malware campaign has been exploiting the updating mechanism of the eScan antivirus to distribute backdoors and cryptocurrency miners. Avast research… First seen on securityaffairs.com Jump to article: securityaffairs.com/162228/breaking-news/escan-antivirus-mitm-attack.html
-
Cisco Zero-Days Anchor ‘ArcaneDoor’ Cyber Espionage Campaign
Attacks by a previously unknown threat actor leveraged two bugs in firewall devices to install custom backdoors on several government networks globall… First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/cisco-zero-days-arcanedoor-cyberespionage-campaign
-
Defending Against ArcaneDoor: How Eclypsium Protects Network Devices
Introduction In coordination with multiple government agencies, Cisco announced yesterday the discovery of a new backdoor targeting their Adaptive Sec… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/defending-against-arcanedoor-how-eclypsium-protects-network-devices/
-
North Korean Hackers Hijack Antivirus Updates for Malware Delivery
A North Korea-linked threat actor hijacked the update mechanism of eScan antivirus to deploy backdoors and cryptocurrency miners. The post Korea-linke… First seen on securityweek.com Jump to article: www.securityweek.com/north-korean-hackers-hijack-antivirus-updates-for-malware-delivery/
-
Malvertising: Fake Popular Software Ads Deliver New MadMxShell Backdoor
IT professionals are under attack! This article exposes a malicious malvertising campaign targeting IT teams with a novel backdoor named MadMxShell. L… First seen on hackread.com Jump to article: www.hackread.com/fake-popular-software-ads-madmxshell-backdoor/
-
Popular Rust Crate liblzma-sys Compromised with XZ Utils Backdoor Files
Test files associated with the XZ Utils backdoor have made their way to a Rust crate known as liblzma-sys, new findings from Phylum reveal.liblzma-sys… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/popular-rust-crate-liblzma-sys.html
-
Hackers Deploy Python Backdoor in Palo Alto Zero-Day Attack
Threat actors have been exploiting the newly disclosed zero-day flaw in Palo Alto Networks PAN-OS software dating back to March 26, 2024, nearly thre… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/hackers-deploy-python-backdoor-in-palo.html
-
Beware Of Weaponized Zip Files That Deliver WINELOADER Malware
APT29, a Russian threat group, targeted German political parties with a new backdoor called WINELOADER using spear-phishing emails containing maliciou… First seen on gbhackers.com Jump to article: gbhackers.com/weaponized-zip-files-wineloader-malware/
-
DuneQuixote campaign targets the Middle East with a complex backdoor
Threat actors target government entities in the Middle East with a new backdoor dubbed CR4T as part of an operation tracked as DuneQuixote. Researcher… First seen on securityaffairs.com Jump to article: securityaffairs.com/162036/hacking/dunequixote-campaign-targets-middle-east.html
-
Malicious SSH backdoor sneaks into xz, Linux world’s data compression library
First seen on theregister.com Jump to article: www.theregister.com/2024/03/29/malicious_backdoor_xz/
-
In Other News: OSS Backdooring Attempts, Botnet Operator Charged, Automotive Firm Attack
Noteworthy stories that might have slipped under the radar: OpenSSF and OpenJS incidents similar to XZ backdoor, Moldovan botnet operator charged, US … First seen on securityweek.com Jump to article: www.securityweek.com/in-other-news-oss-backdooring-attempts-botnet-operator-charged-automotive-firm-attack/
-
Windows vulnerability reported by the NSA exploited to install Russian backdoor
First seen on arstechnica.com Jump to article: arstechnica.com/
-
What we know about the xz Utils backdoor that almost infected the world
Tags: backdoorFirst seen on arstechnica.com Jump to article: arstechnica.com/
-
Previously unknown Kapeka backdoor linked to Russian Sandworm APT
Russia-linked APT Sandworm employed a previously undocumented backdoor calledKapeka in attacks against Eastern Europe since 2022. WithSecure researche… First seen on securityaffairs.com Jump to article: securityaffairs.com/161987/hacking/kapeka-backdoor-linked-sandworm.html
-
Novel Kapeka backdoor leveraged in Sandworm attacks
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/novel-kapeka-backdoor-leveraged-in-sandworm-attacks
-
‘MadMxShell’ leverages Google Ads to deploy malware via Windows backdoor
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/madmxshell-leverages-google-ads-to-deploy-malware-via-windows-backdoor
-
Backdoor found in widely used Linux utility targets encrypted SSH connections
First seen on arstechnica.com Jump to article: arstechnica.com/
-
Palo Alto Patches 0-Day (CVE-2024-3400) Exploited by Python Backdoor
First seen on hackread.com Jump to article: www.hackread.com/palo-alto-patche-0-day-cve-2024-3400-python-backdoor/
-
Kapeka: A New Backdoor in Sandworm’s Arsenal of Aggression
Kapeka is a new backdoor that may be a new addition to Russia-link Sandworm’s malware arsenal and possibly a successor to GreyEnergy. The post s a new… First seen on securityweek.com Jump to article: www.securityweek.com/kapeka-a-new-backdoor-in-sandworms-arsenal-of-aggression/
-
Attempted XZ Utils backdoor-like hijacking thwarted
Tags: backdoorFirst seen on scmagazine.com Jump to article: www.scmagazine.com/brief/attempted-xz-utils-backdoor-like-hijacking-thwarted
-
Russian Sandworm Group Using Novel Backdoor to Target Ukraine and Allies
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/russian-sandworm-backdoor-ukraine/
-
Kostenloser XZScanner von Bitdefender
Tags: backdoorDie Bitdefender Labs haben einen freien Scanner zur Verfügung gestellt, mit dem Unternehmen ihre IT-Systeme auf die am 29. März 2024 bekannt gewordene… First seen on netzpalaver.de Jump to article: netzpalaver.de/2024/04/11/kostenloser-xz-backdoor-scanner-von-bitdefender/

