Tag: malicious
-
Operation Oxidovy, Threat Actors Targeting Government And Military Officials
The recent campaign targeting the Czech Republic involves a malicious ZIP file that contains a decoy LNK file and a batch script. The LNK runs the bat… First seen on gbhackers.com Jump to article: gbhackers.com/operation-oxidovy-threat-actors/
-
Critical Flaws in Progress Software WhatsUp Gold Expose Systems to Full Compromise
Censys warns of over 1,200 internet-accessible WhatsUp Gold instances potentially exposed to malicious attacks. The post Critical Flaws in Progress So… First seen on securityweek.com Jump to article: www.securityweek.com/critical-flaws-in-progress-software-whatsup-gold-expose-systems-to-full-compromise/
-
Hackers Exploited Digital Advertising Tools to Launch Malicious Campaigns
Cybersecurity researchers from Mandiant and Google Cloud have uncovered a sophisticated scheme where hackers exploit digital advertising tools to cond… First seen on gbhackers.com Jump to article: gbhackers.com/hackers-exploited-digital-advertising-tools/
-
North Korean Cyberattacks Persist: Developers Targeted via npm
Recent findings by the Phylum Research Team have brought to light a resurgence of malicious activities on the npm registry, with multiple attack vecto… First seen on securityonline.info Jump to article: securityonline.info/north-korean-cyberattacks-persist-developers-targeted-via-npm/
-
Malicious North Korean packages appear again in open source code repository
First seen on therecord.media Jump to article: therecord.media/npm-javascript-repository-north-korean-malware
-
Combating alert fatigue by prioritizing malicious intent
Tags: maliciousFirst seen on scmagazine.com Jump to article: www.scmagazine.com/perspective/combating-alert-fatigue-by-prioritizing-malicious-intent
-
DarkGate malware spread through malicious Pidgin plugin
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/darkgate-malware-spread-through-malicious-pidgin-plugin
-
PoorTry Windows driver evolves into a full-featured EDR wiper
The malicious PoorTry kernel-mode Windows driver used by multiple ransomware gangs to turn off Endpoint Detection and Response (EDR) solutions has evo… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/poortry-windows-driver-evolves-into-a-full-featured-edr-wiper/
-
Versa Director Zero-day Vulnerability Let Attackers Upload Malicious Files
Versa Networks specializes in successful business. It offers Secure Access Service Edge (SASE), consolidating networking and security services in a si… First seen on gbhackers.com Jump to article: gbhackers.com/versa-director-zero-day-vulnerability-attack/
-
New macOS Malware TodoSwift Linked to North Korean Hacking Groups
Cybersecurity researchers have uncovered a new macOS malware strain dubbed TodoSwift that they say exhibits commonalities with known malicious softwar… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/new-macos-malware-todoswift-linked-to.html
-
A Guide To Selecting The Best URL Filtering Software
In the last year alone, the education sector experienced a 44% increase in cyberattacks. Malicious actors frequently target K-12 schools as they posse… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/08/a-guide-to-selecting-the-best-url-filtering-software/
-
Scam CrowdStrike domains growing in volume
Hundreds of malicious domains exploiting CrowdStrike’s branding are appearing all over the web in the wake of the 19 July outage. Experts from Akamai … First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366599253/Scam-CrowdStrike-domains-growing-in-volume
-
Malware Delivered via Malicious Pidgin Plugin, Signal Fork
Threat actors delivered malware via instant messaging applications, including a malicious Pidgin plugin and an unofficial Signal fork. The post Malwar… First seen on securityweek.com Jump to article: www.securityweek.com/malware-delivered-via-malicious-pidgin-plugin-signal-fork/
-
Xeon Sender Tool Exploits Cloud APIs for Large-Scale SMS Phishing Attacks
Malicious actors are using a cloud attack tool named Xeon Sender to conduct SMS phishing and spam campaigns on a large scale by abusing legitimate ser… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/xeon-sender-tool-exploits-cloud-apis.html
-
Exchange Online mistakenly tags emails as malware
Microsoft is investigating an Exchange Online false positive issue causing emails containing images to be wrongly tagged as malicious and sent to quar… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-exchange-online-mistakenly-tags-emails-as-malware/
-
Novel Technique Allows Malicious Apps To Escape Walled Gardens
Tags: maliciousFirst seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36244/Novel-Technique-Allows-Malicious-Apps-To-Escape-Walled-Gardens.html
-
Versa fixes Director zero-day vulnerability exploited in attacks
Versa Networks has fixed a zero-day vulnerability exploited in the wild that allows attackers to upload malicious files by exploiting an unrestricted … First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/versa-fixes-director-zero-day-vulnerability-exploited-in-attacks/
-
Log4j Vulnerability Exploited Again To Deploy Crypto-Mining Malware
Recent attacks exploit the Log4j vulnerability (Log4Shell) by sending obfuscated LDAP requests to trigger malicious script execution, which establishe… First seen on gbhackers.com Jump to article: gbhackers.com/log4j-exploited-crypto-mining/
-
Android malware uses NFC to steal money at ATMs
ESET researchers uncovered NGate malware, which can relay data from victims’ payment cards via a malicious app installed on their Android devices to t… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/08/22/android-malware-nfc-data-atm-withdrawals/
-
New PEAKLIGHT Dropper Deployed in Attacks Targeting Windows with Malicious Movie Downloads
Cybersecurity researchers have uncovered a never-before-seen dropper that serves as a conduit to launch next-stage malware with the ultimate goal of i… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/new-peaklight-dropper-deployed-in.html
-
The Growing Challenge of Headless Browser Attacks: How to Defend Your Digital Assets
In the escalating battle against malicious headless bots, basic detection methods are no longer sufficient. As cybercriminals refine their techniques … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/08/the-growing-challenge-of-headless-browser-attacks-how-to-defend-your-digital-assets/
-
Cryptohack Roundup: Investors Sue Binance
Also: Malicious Chrome Extension; Mango Markets-SEC Settlement. This week, Binance, ASX and Google sued; Solana users targeted; McDonalds’ X account h… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/cryptohack-roundup-investors-sue-binance-a-26116
-
Researchers Uncover Vulnerabilities in AI-Powered Azure Health Bot Service
Cybersecurity researchers have discovered two security flaws in Microsoft’s Azure Health Bot Service that, if exploited, could permit a malicious acto… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/researchers-uncover-vulnerabilities-in_0471960302.html
-
Rogue PyPI Library Solana Users, Steals Blockchain Wallet Keys
Cybersecurity researchers have discovered a new malicious package on the Python Package Index (PyPI) repository that masquerades as a library from the… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/rogue-pypi-library-solana-users-steals.html
-
Autodesk AutoCAD Vulnerability Let Attackers Execute Arbitrary Code
Autodesk has disclosed a critical vulnerability in its AutoCAD software, which could allow malicious actors to execute arbitrary code. This vulnerabil… First seen on gbhackers.com Jump to article: gbhackers.com/autodesk-autocad-vulnerability/
-
Week in review: MS Office flaw may leak NTLM hashes, malicious Chrome, Edge browser extensions
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Unpatched MS Office flaw may leak NTLM hashes to att… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/08/18/week-in-review-ms-office-flaw-may-leak-ntlm-hashes-malicious-chrome-edge-browser-extensions/
-
Sonos Speaker Flaws Could Have Let Remote Hackers Eavesdrop on Users
Cybersecurity researchers have uncovered weaknesses in Sonos smart speakers that could be exploited by malicious actors to clandestinely eavesdrop on … First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/new-flaws-in-sonos-smart-speakers-allow.html
-
Tech support scammers impersonate Google via malicious search ads
Google Search ads that target users looking for Google’s own services lead them to spoofed sites and Microsoft and Apple tech support scams. The fake … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/08/16/google-ads-support-scams/
-
0.0.0.0 Day: 18-Year-Old Browser Vulnerability Impacts MacOS and Linux Devices
Cybersecurity researchers have discovered a new 0.0.0.0 Day impacting all major web browsers that malicious websites could take advantage of to breach… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/0000-day-18-year-old-browser.html

