Tag: malicious
-
CatDDoS Exploiting 80+ Vulnerabilities, Attacking 300+ Targets Daily
Malicious traffic floods targeted systems, servers, or networks in Distributed Denial of Service (DDoS) attacks are actively exploited by hackers. Som… First seen on gbhackers.com Jump to article: gbhackers.com/catddos-ddos-attacks/
-
Cybercriminals Abuse StackOverflow to Promote Malicious Python Package
Cybersecurity researchers have warned of a new malicious Python package that has been discovered in the Python Package Index (PyPI) repository to faci… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/cybercriminals-abuse-stackoverflow-to.html
-
Top 5 Evaluation Criteria For Choosing The Right ITDR Tool
Identity is now a top priority for security decision makers. The need to overcome malicious TTPs, such as credential access, privilege escalation and … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/05/top-5-evaluation-criteria-for-choosing-the-right-itdr-tool/
-
Russia’s Turla APT Abuses MSBuild to Deliver TinyTurla Backdoor
A threat campaign luring users with malicious documents related to human rights and public notices is aimed at giving the Russia-backed threat group a… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/russia-turla-apt-msbuild-tinyturla-backdoor
-
Hackers phish finance orgs using trojanized Minesweeper clone
Hackers are utilizing code from a Python clone of Microsoft’s venerable Minesweeper game to hide malicious scripts in attacks on European and US finan… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-phish-finance-orgs-using-trojanized-minesweeper-clone/
-
Top Cloud Services Used for Malicious Website Redirects in SMS Scams
First seen on hackread.com Jump to article: www.hackread.com/cloud-services-malicious-sites-redirect-sms-scams/
-
Malware-laced JAVS Viewer deploys RustDoor implant in supply chain attack
Malicious actors compromised the JAVS Viewer installer to deliver the RustDoor malware in a supply chain attack. Rapid7 researchers warned that threat… First seen on securityaffairs.com Jump to article: securityaffairs.com/163683/hacking/supplay-chain-attack-javs-viewer.html
-
Hackers Weaponizing Microsoft Access Documents To Execute Malicious Program
In multiple aggressive phishing attempts, the financially motivated organization UAC-0006 heavily targeted Ukraine, utilizing ZIP and RAR attachments … First seen on gbhackers.com Jump to article: gbhackers.com/hackers-microsoft-access-malware/
-
Malicious PyPI NPM Packages Attacking MacOS Users
Cybersecurity researchers have identified a series of malicious software packages targeting MacOS users. These packages, found on the Python Package I… First seen on gbhackers.com Jump to article: gbhackers.com/malicious-pypi-npm-packages/
-
CISOs pursuing AI readiness should start by updating the org’s email security policy
Over the past few years, traditional phishing messages, with their pervasive linguistic errors, thinly-veiled malicious payloads, and often outlandish… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/05/23/cisos-ai-readiness-policies-update/
-
ShrinkLocker Ransomware Exploits Microsoft’s BitLocker
Malicious Script Targets Users in Mexico, Indonesia, Jordan. Why bother building a crypto-locker when Microsoft has perfectly acceptable encryption so… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/shrinklocker-ransomware-exploits-microsofts-bitlocker-a-25322
-
Cybercriminals are targeting elections in India with influence campaigns
Resecurity warns of a surge in malicious cyber activity targeting the election in India, orchestrated by several independent hacktivist groups Resecur… First seen on securityaffairs.com Jump to article: securityaffairs.com/163529/cyber-crime/hacktivists-target-elections-india.html
-
Android 15 Rolls Out Advanced Features to Protect Users from Scams and Malicious Apps
Google is unveiling a set of new features in Android 15 to prevent malicious apps installed on the device from capturing sensitive data.This constitut… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/android-15-introduces-new-features-to.html
-
Courtroom Software Backdoored to Deliver RustDoor Malware in Supply Chain Attack
Malicious actors have backdoored the installer associated with courtroom video recording software developed by Justice AV Solutions (JAVS) to deliver … First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/courtroom-software-backdoored-to.html
-
Cloud-Based Malware Attack Abusing Google Drive Dropbox
A phishing email with a malicious zip attachment initiates the attack. The zip contains a single executable disguised as an Excel file using Left-To-R… First seen on gbhackers.com Jump to article: gbhackers.com/cloud-malware-attack-google-drive-dropbox/
-
GhostEngine mining attacks kill EDR security using vulnerable drivers
A malicious crypto mining campaign codenamed ‘REF4578,’ has been discovered deploying a malicious payload named GhostEngine that uses vulnerable drive… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/ghostengine-mining-attacks-kill-edr-security-using-vulnerable-drivers/
-
Critical Flaws in Cacti Framework Could Let Attackers Execute Malicious Code
The maintainers of the Cacti open-source network monitoring and fault management framework have addressed a dozen security flaws, including two critic… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/critical-flaws-in-cacti-framework-could.html
-
Malicious Python Package Hides Sliver C2 Framework in Fake Requests Library Logo
Cybersecurity researchers have identified a malicious Python package that purports to be an offshoot of the popular requests library and has been foun… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/malicious-python-package-hides-sliver.html
-
Turla APT Group Suspected of Utilizing Tiny BackDoor Exploiting MSBuild for Stealthy Attacks
Cyble Research and Intelligence Labs (CRIL) has discovered a sophisticated cyber campaign employing malicious LNK files, potentially distributed throu… First seen on thecyberexpress.com Jump to article: thecyberexpress.com/new-turla-apt-groups-tiny-backdoor-tactics/
-
FIN7 Hacker Group Leverages Malicious Google Ads to Deliver NetSupport RAT
The financially motivated threat actor known as FIN7 has been observed leveraging malicious Google ads spoofing legitimate brands as a means to delive… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/fin7-hacker-group-leverages-malicious.html
-
Digital Impersonation Fraud: a Growing Challenge for Brands
Malicious actors are using AI to perpetrate phishing scams centered around website impersonation, a threat few businesses are prepared to combat. The … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/05/digital-impersonation-fraud-a-growing-challenge-for-brands/
-
Malicious Android Apps Pose as Google, Instagram, WhatsApp to Steal Credentials
Malicious Android apps masquerading as Google, Instagram, Snapchat, WhatsApp, and X (formerly Twitter) have been observed to steal users’ credentials … First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/malicious-android-apps-pose-as-google.html
-
Challenging Times Remain Among the Ever-Evolving Email Landscape
Criminals are successfully using email to scam, infiltrate networks, and unleash malicious payloads. We’re continuing to witness bad actors relentless… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/05/challenging-times-remain-among-the-ever-evolving-email-landscape/
-
Mirai Botnet Exploits Ivanti Connect Secure Flaws for Malicious Payload Delivery
Two recently disclosed security flaws in Ivanti Connect Secure (ICS) devices are being exploited to deploy the infamous Mirai botnet.That’s according … First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/mirai-botnet-exploits-ivanti-connect.html
-
DNS Tunneling Used for Stealthy Scans and Email Tracking
Hackers are hiding malicious messages in everyday internet traffic! Learn how DNS tunneling works and how to protect yourself from this sneaky cyberat… First seen on hackread.com Jump to article: www.hackread.com/dns-tunneling-stealthy-scans-email-tracking/
-
New Case Study: The Malicious Comment
How safe is your comments section? Discover how a seemingly innocent ‘thank you’ comment on a product page concealed a malicious vulnerability, unders… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/new-case-study-malicious-comment.html
-
Malicious PyPI ‘requests’ fork hides backdoor in PNG file
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/malicious-pypi-requests-fork-hides-backdoor-in-png-file
-
Threat actors expanding malicious use of DNS tunneling
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/threat-actors-expanding-malicious-use-of-dns-tunneling
-
Malicious PyPi Requests Fork Hides Backdoor In PNG File
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/35880/Malicious-PyPi-Requests-Fork-Hides-Backdoor-In-PNG-File.html
-
FortiOS FortiProxy SSL-VPN Flaw Allows IP Spoofing via Malicious Packets
A critical vulnerability has been discovered in Fortinet’s FortiOS SSL-VPN and FortiProxy SSL-VPN. The flaw, identified as FG-IR-23-225, allows attack… First seen on gbhackers.com Jump to article: gbhackers.com/fortios-fortiproxy-ssl-vpn-flaw/

