Tag: malicious
-
IT Teams Beware! Weaponized WinSCP PuTTY Delivers Ransomware
Attackers launched a campaign distributing trojanized installers for WinSCP and PuTTY in early March 2024, as clicking malicious ads after searching f… First seen on gbhackers.com Jump to article: gbhackers.com/weaponized-winscp-putty/
-
Hackers Increasingly Abusing Microsoft Graph API for Stealthy Malware Communications
Threat actors have been increasingly weaponizing Microsoft Graph API for malicious purposes with the aim of evading detection.This is done to facilita… First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/hackers-increasingly-abusing-microsoft.html
-
Apple iTunes for Windows Flaw Let Attackers Execute Malicious Code
iTunes has been found to have an arbitrary code execution vulnerability that might allow attackers to execute malicious code. To fix this vulnerabilit… First seen on gbhackers.com Jump to article: gbhackers.com/apple-itunes-for-windows-flaw/
-
Hackers Abuse DNS Tunneling For Covert Communication Firewall Bypass
As a sneaky scheme, hackers use DNS tunneling to bypass traditional security measures. By wrapping malicious data inside DNS queries and responses, th… First seen on gbhackers.com Jump to article: gbhackers.com/dns-tunneling-covert-communication/
-
Easily Guessed Passwords for New Accounts Include User, Temp, Welcome
New account passwords, often used during onboarding, are vulnerable to sophisticated attacks from malicious actors. Good idea to check: What’s your co… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/05/easily-guessed-passwords-for-new-accounts-include-user-temp-welcome/
-
LLMs & Malicious Code Injections: ‘We Have to Assume It’s Coming’
First seen on darkreading.com Jump to article: www.darkreading.com/application-security/llms-malicious-code-injections-we-have-to-assume-its-coming-
-
Hackers use DNS tunneling for network scanning, tracking victims
Threat actors are using Domain Name System (DNS) tunneling to track when their targets open phishing emails and click on malicious links, and to scan … First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-use-dns-tunneling-for-network-scanning-tracking-victims/
-
Microsoft Previews Feature to Block Malicious OAuth Apps
First seen on darkreading.com Jump to article: www.darkreading.com/identity-access-management-security/microsoft-previews-feature-to-block-malicious-oauth-apps
-
Apache OFBiz RCE Flaw Let Attackers Execute Malicious Code Remotely
Many businesses use enterprise resource planning (ERP) systems like Apache OFBiz. However, it has been found to have significant security holes that l… First seen on gbhackers.com Jump to article: gbhackers.com/apache-ofbiz-rce-flaw/
-
Exploited Chrome Zero-Day Patched by Google
A Chrome 124 update patches the second Chrome zero-day that has been found to be exploited in malicious attacks in 2024. The post 124 update patches t… First seen on securityweek.com Jump to article: www.securityweek.com/exploited-chrome-zero-day-patched-by-google/
-
LiteSpeed Cache Plugin XSS Vulnerability Affects 1.8M WordPress Sites
Is your WordPress site using LiteSpeed Cache? A recent surge in malicious JavaScript injections targets vulnerable versions. Learn how to identify the… First seen on hackread.com Jump to article: www.hackread.com/litespeed-cache-plugin-xss-vulnerability-wordpress-sites/
-
Millions of Malicious ‘Imageless’ Containers Planted on Docker Hub Over 5 Years
Cybersecurity researchers have discovered multiple campaigns targeting Docker Hub by planting millions of malicious imageless containers over the past… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/millions-of-malicious-imageless.html
-
US and UK unveil sanctions against Chinese state-backed hackers over alleged ‘malicious’ attacks
First seen on theguardian.com Jump to article: www.theguardian.com/technology/2024/mar/25/us-sanctions-chinese-hackers
-
Google Prevented 2.28 Million Malicious Apps from Reaching Play Store in 2023
Google on Monday revealed that almost 200,000 app submissions to its Play Store for Android were either rejected or remediated to address issues with … First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/google-prevented-228-million-malicious.html
-
Malicious Android Apps Pose as Google, Instagram, WhatsApp, to Steal Credentials
Malicious Android apps masquerading as Google, Instagram, Snapchat, WhatsApp, and X (formerly Twitter) have been observed to steal users’ credentials … First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/malicious-android-apps-pose-as-google.html
-
Malicious Android Apps Pose as Google, Instagram, WhatsApp, Spread via Smishing
Malicious Android apps masquerading as Google, Instagram, Snapchat, WhatsApp, and X (formerly Twitter) have been observed to steal users’ credentials … First seen on thehackernews.com Jump to article: thehackernews.com/2024/05/malicious-android-apps-pose-as-google.html
-
New R Programming Vulnerability Exposes Projects to Supply Chain Attacks
A security vulnerability has been discovered in the R programming language that could be exploited by a threat actor to create a malicious RDS (R Data… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/new-r-programming-vulnerability-exposes.html
-
Critical PDF.js React-PDF Vulnerabilities Threaten Millions Of PDF Users
A new critical vulnerability has been discovered in PDF.js, which could allow a threat actor to execute arbitrary code when opening a malicious PDF. P… First seen on gbhackers.com Jump to article: gbhackers.com/pdf-js-react-pdf-vulnerabilities-threat/
-
Supply chain attack abuses GitHub features to spread malware
Checkmarx warned developers to be cautious when choosing which repositories to use, as attackers are manipulating GitHub features to boost malicious c… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366580379/Supply-chain-attack-abuses-GitHub-features-to-spread-malware
-
Cyber crooks poison GitHub search to fool developers
Researchers share data on new technique whereby malicious actors are manipulating GitHub’s search function and using cleverly crafted repositories to … First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366580472/Cyber-crooks-poison-GitHub-search-to-fool-developers
-
Trend Micro Antivirus One Let Attacker Inject Malicious Code Into Application
A significant update for Trend Micro’s Antivirus One software has been released. The update addresses a critical vulnerability that may have enabled a… First seen on gbhackers.com Jump to article: gbhackers.com/trend-micro-antivirus-code-injection/
-
Weaponized Windows Shortcut Files Deploying Fileless RokRat Malware
Hackers target LNK (Windows shortcut) files to disseminate malware because they can embed malicious code that automatically executes when the shortcut… First seen on gbhackers.com Jump to article: gbhackers.com/weaponized-windows-fileles-rokrat-malware/
-
Millions of Malicious Containers Found on Docker Hub
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/malicious-containers-found-docker/
-
Airsoft Data Breach Exposes Data of 75,000 Players
Failure to configure authentication allowed malicious actors to exploit Airsoftc3.com’s database, exposing the sensitive data of a vast number of the … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/05/airsoft-data-breach-exposes-data-of-75000-players/
-
2024 Data Breach Investigations Report: Most breaches involve a non-malicious human element
The exploitation of vulnerabilities as an initial point of entry almost tripled from the previous year, accounting for 14% of all breaches, according … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/05/02/verizon-2024-data-breach-investigations-report-dbir/
-
Microsoft warns of Dirty Stream attack impacting Android apps
Microsoft has highlighted a novel attack dubbed Dirty Stream, which could allow malicious Android apps to overwrite files in another application’s hom… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/microsoft-warns-of-dirty-stream-attack-impacting-android-apps/
-
Malicious repositories proliferate in Docker Hub
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/malicious-repositories-proliferate-in-docker-hub
-
Google Guide! How to Detect Browser Data Theft Using Windows Event Logs
In the ever-evolving cybersecurity landscape, Google is continually striving to protect user data from malicious actors. In a recent blog post, the te… First seen on gbhackers.com Jump to article: gbhackers.com/google-guide-how-to-detect-browser-data-theft-using-windows-event-logs/
-
Millions of Malicious >>Imageless<< Docker Hub Repositories Drop Malware
In a startling revelation, nearly 20% of Docker Hub repositories have been identified as conduits for malware and phishing scams, underscoring the sop… First seen on gbhackers.com Jump to article: gbhackers.com/millions-of-malicious-imageless-docker-hub-repositories/
-
Voter Registration System Taken Offline in Coffee County Cyber-Incident
Coffee County has discovered malicious cyber-activity on its IT systems, and it reportedly severed its connection to Georgia’s state voter registratio… First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/voter-registration-offline-coffee/

