Tag: malicious
-
Microsoft 365 Vulnerability Let Hackers Bypass Anti-phishing Feature
A vulnerability in Microsoft 365 (formerly Office 365) has been found that allows malicious actors to bypass anti-phishing measures. One of the anti-p… First seen on gbhackers.com Jump to article: gbhackers.com/microsoft-365-phishing-bypass/
-
Malicious domains blocked by AWS neural network system
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/malicious-domains-blocked-by-aws-neural-network-system
-
AWS Neural Network System Blocks Malicious Domains
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/aws-neural-network-system-blocks-malicious-domains
-
Chrome Security Update: Patch for Multiple Vulnerabilities
Google has announced a critical security update for its Chrome browser, addressing several vulnerabilities that malicious actors could exploit. The St… First seen on gbhackers.com Jump to article: gbhackers.com/chrome-security-update-patch/
-
OneDrive Phishing Scam Tricks Users into Running Malicious PowerShell Script
Cybersecurity researchers are warning about a new phishing campaign that targets Microsoft OneDrive users with the aim of executing a malicious PowerS… First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/onedrive-phishing-scam-tricks-users.html
-
Malicious PyPI Package Targets macOS to Steal Google Cloud Credentials
Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) repository that targets Apple macOS systems with the … First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/malicious-pypi-package-targets-macos-to.html
-
This AI-Powered Cybercrime Service Bundles Phishing Kits with Malicious Android Apps
A Spanish-speaking cybercrime group named GXC Team has been observed bundling phishing kits with malicious Android applications, taking malware-as-a-s… First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/spanish-hackers-bundle-phishing-kits.html
-
Beware Of Fake AI Editor Website That Steals Your Login Credentials
Hackers often make use of fake AI editor websites for several illicit purposes with malicious intent. Among their prime activities are deceiving users… First seen on gbhackers.com Jump to article: gbhackers.com/ake-al-editor-security-alert/
-
Chinese hackers compromised an ISP to deliver malicious software updates
APT StormBamboo compromised a undisclosed internet service provider (ISP) to poison DNS queries and thus deliver malware to target organizations, Vole… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/08/05/compromised-isp-dns-malware/
-
AWS Deploying ‘Mithra’ Neural Network to Predict and Block Malicious Domains
AWS says a massive neural network graph model with 3.5 billion nodes and 48 billion edges is speeding up the prediction and detection of malicious dom… First seen on securityweek.com Jump to article: www.securityweek.com/aws-deploying-mithra-neural-network-to-predict-and-block-malicious-domains/
-
Hackers Abused StackExchange Platform To Deliuver Malicious Python Package
Attackers uploaded malicious Python packages targeting Raydium and Solana users to PyPI, leveraging a StackExchange post to distribute the malware. Th… First seen on gbhackers.com Jump to article: gbhackers.com/stackexchange-malware-attack/
-
Targeted PyPi Package Steals Google Cloud Credentials from macOS Devs
The campaign is laser-targeted, bucking the trend of spray-and-pray malicious open source packages turning up in code repositories seemingly every oth… First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/targeted-pypi-package-steals-google-cloud-credentials-macos-devs
-
Attackers exploit StackExchange to load malicious packages to PyPI
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/attackers-exploit-stackexchange-to-load-malicious-packages-to-pypi
-
Massive Android SMS Stealer Campaign Uncovered: Over 100,000 Malicious Apps Targeting Global Users
A new report from Zimperium zLabs reveals a sprawling and sophisticated Android malware campaign that has infected over 107,000 devices across 113 cou… First seen on securityonline.info Jump to article: securityonline.info/massive-android-sms-stealer-campaign-uncovered-over-100000-malicious-apps-targeting-global-users/
-
Beware Of Malicious Crypto Management App That Drains Your Wallet
A forwarded Telegram video advertises heavily discounted, high-profile cryptocurrency projects, enticing viewers with links to a seemingly legitimate … First seen on gbhackers.com Jump to article: gbhackers.com/malicious-crypto-app-warning/
-
New Chrome Feature Scans Password-Protected Files for Malicious Content
Google said it’s adding new security warnings when downloading potentially suspicious and malicious files via its Chrome web browser.We have replaced … First seen on thehackernews.com Jump to article: thehackernews.com/2024/07/new-chrome-feature-scans-password.html
-
SMS Stealer malware targeting Android users: Over 105,000 samples identified
Zimperium’s zLabs team has uncovered a new and widespread threat dubbed SMS Stealer. Detected during routine malware analysis, this malicious software… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/07/31/sms-stealer-threat/
-
StackExchange abused to spread malicious PyPi packages as answers
Threat actors uploaded malicious Python packages to the PyPI repository and promoted them through the StackExchange online question and answer platfor… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/stackexchange-abused-to-spread-malicious-pypi-packages-as-answers/
-
OneDrive Phishing Campaign Uses Malicious PowerShell Script
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/onedrive-phishing-campaign-uses-malicious-powershell-script
-
AI-Driven Phishing-asService: GXC Team Raises the Stakes in Cybercrime
Group-IB reports on the activities of the Spanish-speaking cyber group GXC Team, which uses phishing kits with malicious Android applications. The cyb… First seen on securityonline.info Jump to article: securityonline.info/ai-driven-phishing-as-a-service-gxc-team-raises-the-stakes-in-cybercrime/
-
‘Stargazer Goblin’ Amasses Rogue GitHub Accounts to Spread Malware
The threat group uses its Stargazers Ghost Network to star, fork, and watch malicious repos to make them seem legitimate, all to distribute a variety … First seen on darkreading.com Jump to article: www.darkreading.com/application-security/stargazer-goblin-amasses-rogue-github-accounts-to-spread-malware
-
Fraud ring pushes 600+ fake web shops via Facebook ads
A malicious fraud campaign dubbed ERIAKOS promotes more than 600 fake web shops through Facebook advertisements to steal visitors’ personal and financ… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fraud-ring-pushes-600-plus-fake-web-shops-via-facebook-ads/
-
Massive SMS stealer campaign infects Android devices in 113 countries
A malicious campaign targeting Android devices worldwide utilizes thousands of Telegram bots to infect devices with SMS-stealing malware and steal one… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/massive-sms-stealer-campaign-infects-android-devices-in-113-countries/
-
Google Cloud credentials in macOS targeted by malicious PyPI package
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/google-cloud-credentials-in-macos-targeted-by-malicious-pypi-package
-
Belarus-linked APT Ghostwriter targeted Ukraine with PicassoLoader malware
Belarus-linked APT group GhostWriter targeted Ukrainian organizations with a malware family known as PicassoLoader, used to deliver various malicious … First seen on securityaffairs.com Jump to article: securityaffairs.com/166265/intelligence/belarus-apt-ghostwriter-targeted-ukraine.html
-
AI’s Dark Side: Hackers Harnessing ChatGPT and LLMs for Malicious Attacks
In a concerning trend, cybercriminals are increasingly leveraging Large Language Models (LLMs) like ChatGPT to craft sophisticated and deceptive attac… First seen on securityonline.info Jump to article: securityonline.info/ais-dark-side-hackers-harnessing-chatgpt-and-llms-for-malicious-attacks/
-
US cyber agency CISA says malicious hackers are ‘taking advantage’ of CrowdStrike outage
First seen on techcrunch.com Jump to article: techcrunch.com/2024/07/19/us-cyber-agency-cisa-says-malicious-hackers-are-taking-advantage-of-crowdstrike-outage/
-
Threat Actots Leveraging ChatGPT To Craft Sophisticated Attacks
Adversaries are employing Large Language Models to generate malicious code, delivered via phishing emails, for downloading diverse payloads, including… First seen on gbhackers.com Jump to article: gbhackers.com/ai-powered-cyber-attacks-llm/
-
Hackers Attacking Users Searching For W2 Form
Tags: maliciousA malicious campaign emerged on June 21, 2024, distributing a JavaScript file hosted on grupotefex.com, which executes an MSI installer, subsequently … First seen on gbhackers.com Jump to article: gbhackers.com/hackers-target-w2-form-searchers/

