Tag: malicious
-
Well-Established Cybercriminal Ecosystem Blooming in Iraq
A malicious Telegram bot is the key to a veritable flourishing garden of nefarious cybercriminal activity, which was discovered via a series of Python… First seen on darkreading.com Jump to article: www.darkreading.com/threat-intelligence/cybercriminal-ecosystem-flourishes-iraq
-
Malicious NuGet Campaign Exploits Homoglyphs and Code Injection to Fool Developers
ReversingLabs, a leading software supply chain security firm, has uncovered a sophisticated malicious campaign targeting the NuGet package manager, a … First seen on securityonline.info Jump to article: securityonline.info/malicious-nuget-campaign-exploits-homoglyphs-and-code-injection-to-fool-developers/
-
Nation-States and Zero-days Cranking Up the Heat
Summertime isn’t just for vacations and barbecues, it’s also prime season for zero-day attacks. These attacks, launched by malicious actors exploiting… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/07/nation-states-and-zero-days-cranking-up-the-heat/
-
Hundreds of fake apps concealed malicious twins in widespread ad fraud campaign
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/hundreds-of-fake-apps-concealed-malicious-twins-in-widespread-ad-fraud-campaign
-
SYS01 info-stealer pushed via Facebook ads, LinkedIn and YouTube posts
Malicious Google ads are a well known threat, but malvertising can also be found on other popular online destinations such as Facebook, LinkedIn, and … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/07/16/malicious-ads-facebook-linkedin/
-
New Poco RAT Weaponizing 7zip Files Using Google Drive
The hackers weaponize 7zip files to pass through security measures and deliver malware effectively. These archived files can hide malicious content, w… First seen on gbhackers.com Jump to article: gbhackers.com/poco-rat-7zip-google-drive/
-
Why SMB Security Needs Efficient Device Management
Tags: maliciousSMBs are increasingly becoming the cyberattacker’s goldmine. Device management is one way to stay ahead of malicious actors and protect your crown dat… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/07/why-smb-security-needs-efficient-device-management/
-
Malicious NuGet Campaign Tricking Developers To Inject Malicious Code
Hackers often target NuGet as it’s a popular package manager for .NET, which developers widely use to share and consume reusable code. Threat actors … First seen on gbhackers.com Jump to article: gbhackers.com/malicious-nuget-campaign-code-injection/
-
Trojanized jQuery Packages Spread via ‘Complex’ Supply Chain Attack
The campaign, which distributes dozens of malicious jQuery variants across npm, GitHub, and jsDelivr, appears to be a manual effort, and lacks the typ… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/trojanized-jquery-packages-complex-supply-chain-attack
-
Critical Exim Flaw Allows Attackers to Deliver Malicious Executables to Mailboxes
Successful exploitation could allow attackers to deliver executable attachments to inboxes. The post Critical Exim Flaw Allows Attackers to Deliver Ma… First seen on securityweek.com Jump to article: www.securityweek.com/critical-exim-flaw-allows-attackers-to-deliver-malicious-executables-to-mailboxes/
-
Critical flaw in Exim MTA could allow to deliver malware to users’ inboxes
A critical vulnerability in Exim mail server allows attackers to deliver malicious executable attachments to mailboxes. Attackers can exploit a critic… First seen on securityaffairs.com Jump to article: securityaffairs.com/165649/hacking/critical-flaw-exim-mta.html
-
USENIX Security ’23 One Size Does not Fit All: Quantifying the Risk of Malicious App Encounters for Different Android User Profiles
Authors/Presenters:Savino Dambra, Leyla Bilge, Platon Kotzias, Yun Shen, Juan Caballero Many thanks to USENIX for publishing their outstanding USENIX … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/07/usenix-security-23-one-size-does-not-fit-all-quantifying-the-risk-of-malicious-app-encounters-for-different-android-user-profiles/
-
Ongoing NuGet supply chain attack involves dozens new malicious packages
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/ongoing-nuget-supply-chain-attack-involves-dozens-new-malicious-packages
-
Exim vulnerability affecting 1.5 million servers lets attackers attach malicious files
First seen on arstechnica.com Jump to article: arstechnica.com/
-
Windows MSHTML zero-day used in malware attacks for over a year
Microsoft fixed a Windows zero-day vulnerability that has been actively exploited in attacks for eighteen months to launch malicious scripts while byp… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/windows-mshtml-zero-day-used-in-malware-attacks-for-over-a-year/
-
Kimsuky Using TRANSLATEXT Chrome Extension to Steal Sensitive Data
The North Korea-linked threat actor known as Kimsuky has been linked to the use of a new malicious Google Chrome extension that’s designed to steal se… First seen on thehackernews.com Jump to article: thehackernews.com/2024/06/kimsuky-using-translatext-chrome.html
-
Universal Code Execution Vulnerability In Browsers Puts Millions Of Users At Risk
Hackers remotely execute malicious code on a compromised device or server by exploiting the Universal Code Execution vulnerability. Through this vulne… First seen on gbhackers.com Jump to article: gbhackers.com/universal-code-execution-vulnerability-browsers-risk/
-
GuardZoo spyware used by Houthis to target military personnel
Lookout discovered GuardZoo, Android spyware targeting Middle Eastern military personnel. This campaign leverages malicious apps with military and rel… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/07/09/guardzoo-spyware-target-military-personnel/
-
Over 380k Hosts Still Referencing Malicious Polyfill Domain
Tags: maliciousFirst seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36063/Over-380k-Hosts-Still-Referencing-Malicious-Polyfill-Domain.html
-
Polyfill.io Supply Chain Attack: Malicious JavaScript Injection Puts Over 100k Websites At Risk
Polyfill.io helps web developers achieve cross-browser compatibility by automatically managing necessary polyfills. By adding a script tag to their HT… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/07/polyfill-io-supply-chain-attack-malicious-javascript-injection-puts-over-100k-websites-at-risk/
-
Strategies to Safeguard the Finance Industry Against Deepfake Onslaught
With the rise of deepfake technology, the financial sector faces a new and growing threat landscape, as malicious actors exploit artificial intelligen… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/07/strategies-to-safeguard-the-finance-industry-against-deepfake-onslaught/
-
Researchers Warn of Flaws in Widely Used Industrial Gas Analysis Equipment
Multiple security flaws have been disclosed in Emerson Rosemount gas chromatographs that could be exploited by malicious actors to obtain sensitive in… First seen on thehackernews.com Jump to article: thehackernews.com/2024/06/researchers-warn-of-flaws-in-widely.html
-
DarkGate switches up its tactics with new payload, email templates
This post was authored by Kalpesh Mantri. Cisco Talos is actively tracking a recent increase in activity from malicious email ca… First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/darkgate-remote-template-injection/
-
Cloudy with a Chance of Cyberattack: Understanding LOTC Attacks and How ZTNA Can Prevent Them
With Living Off the Cloud (LOTC) attacks, hackers abuse APIs of trusted cloud services to remotely control botnets but also to make malicious traffic … First seen on securityweek.com Jump to article: www.securityweek.com/cloudy-with-a-chance-of-cyberattack-understanding-lotc-attacks-and-how-ztna-can-prevent-them/
-
Ethereum mailing list breach exposes 35,000 to crypto draining attack
A threat actor compromised Ethereum’s mailing list provider and sent to over 35,000 addresses a phishing email with a link to a malicious site running… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/ethereum-mailing-list-breach-exposes-35-000-to-crypto-draining-attack/
-
Polyfill.io Supply Chain Attack: 384,773 hosts still embedding a polyfill JS script linking to the malicious domain
Cybersecurity company Censys has identified over 380,000 hosts that are still referencing the malicious polyfill.io domain. Censys reported that over … First seen on securityaffairs.com Jump to article: securityaffairs.com/165302/hacking/polyfill-io-supply-chain-attack.html
-
Over 380k Hosts Still Referencing Malicious Polyfill Domain: Censys
Tags: maliciousCensys has discovered more than 380,000 hosts, including major platforms, still referencing the malicious polyfill.io domain. The post as discovered m… First seen on securityweek.com Jump to article: www.securityweek.com/over-380k-hosts-still-referencing-malicious-polyfill-domain-censys/

