Tag: malicious
-
Google Blocks 2.28M Malicious Apps Entering The Play Store
A safe and trusted Google Play experience is our top priority. We leverage our SAFE (see below) principles to provide the framework to create that exp… First seen on gbhackers.com Jump to article: gbhackers.com/google-blocks-millions-malicious-apps/
-
Safari Vulnerability Exposes EU iOS Users to Malicious Marketplaces
A serious concern has arisen for iPhone users in the European Union as a newly discovered flaw in Apple’s Safari browser has the potential to expose t… First seen on gbhackers.com Jump to article: gbhackers.com/safari-flaw-exposes-eu-ios/
-
Fortify AI Training Datasets From Malicious Poisoning
First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/fortify-ai-training-datasets-from-malicious-poisoning
-
Docker Hub Users Targeted With Imageless, Malicious Repositories
JFrog raises an alarm after finding three large-scale malware campaigns targeting Docker Hub with imageless repositories. The post ises an alarm after… First seen on securityweek.com Jump to article: www.securityweek.com/docker-hub-users-targeted-with-imageless-malicious-repositories/
-
Typosquatting campaign, malicious packages slam PyPi
Threat actors used automated typosquatting attacks to lead victims to malicious python packages in yet another campaign targeting the open-source soft… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366577455/Typosquatting-campaign-malicious-packages-slam-PyPi
-
How to Conduct Advanced Static Analysis in a Malware Sandbox
Sandboxes are synonymous with dynamic malware analysis. They help to execute malicious files in a safe virtual environment and observe their behavior…. First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/how-to-conduct-advanced-static-analysis.html
-
Microsoft Releases New-Open Source Tool for OT Security
ICSpector Is Now on GitHub, Scans PLCs, Extracts Info and Detects Malicious Code. Microsoft has released a new open-source security tool to close gaps… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/microsoft-releases-new-open-source-tool-for-ot-security-a-24961
-
Malicious Google Ads Pushing Fake IP Scanner Software with Hidden Backdoor
A new Google malvertising campaign is leveraging a cluster of domains mimicking a legitimate IP scanner software to deliver a previously unknown backd… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/malicious-google-ads-pushing-fake-ip.html
-
Analyze Malicious Powershell Scripts by Running Malware in ANY.RUN Sandbox
Hackers exploit PowerShell, a built-in scripting tool on Windows (and sometimes Linux), to launch various attacks. PowerShell scripts can download mal… First seen on gbhackers.com Jump to article: gbhackers.com/powershell-script-tracer_-analyze-powershell-execution/
-
How Momentum is Building for the US Government to Play a Larger Role in Protecting K12 Schools from Cyberattacks
Ransomware (a type of malicious software designed to block access to a computer system or… The post re (a type of malicious software designed to blo… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/how-momentum-is-building-for-the-us-government-to-play-a-larger-role-in-protecting-k12-schools-from-cyberattacks/
-
Malvertising: Fake Popular Software Ads Deliver New MadMxShell Backdoor
IT professionals are under attack! This article exposes a malicious malvertising campaign targeting IT teams with a novel backdoor named MadMxShell. L… First seen on hackread.com Jump to article: www.hackread.com/fake-popular-software-ads-madmxshell-backdoor/
-
Spyroid RAT Attacking Android Users to Steal Confidential Data
A new type of Remote Access Trojan (RAT) named Spyroid has been identified. This malicious software is specifically designed to infiltrate Android sys… First seen on gbhackers.com Jump to article: gbhackers.com/spyroid-rat-attacking-android/
-
CoralRaider Hacker Evade Antivirus Detections Using Malicious LNK File
This campaign is observed to be targeting multiple countries, including the U.S., Nigeria, Germany, Egypt, the U.K., Poland, the Philippines, Norway, … First seen on gbhackers.com Jump to article: gbhackers.com/coralraider-lnk-antivirus-evasion/
-
Malicious PyPI Package Attacking Discord Users To Steal Credentials
Hackers often target PyPI packages to exploit vulnerabilities and inject malicious code into widely used Python libraries. Recently, cybersecurity res… First seen on gbhackers.com Jump to article: gbhackers.com/malicious-pypi-package-discord-credentials/
-
Research Shows How Attackers Can Abuse EDR Security Products
Vulnerabilities in Palo Alto Networks Cortex XDR allowed a security researcher to turn it into a malicious offensive tool. The post ilities in Palo Al… First seen on securityweek.com Jump to article: www.securityweek.com/research-shows-how-attackers-can-abuse-edr-security-products/
-
Critical Forminator plugin flaw impacts over 300k WordPress sites
The Forminator WordPress plugin used in over 500,000 sites is vulnerable to a flaw that allows malicious actors to perform unrestricted file uploads t… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/critical-forminator-plugin-flaw-impacts-over-300k-wordpress-sites/
-
Chinese hackers responsible for two ‘malicious’ cyber campaigns against UK
Government sanctions two Chinese nationals and a Chinese company identified as responsible for cyber campaigns against government officials and member… First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366575299/Chinese-hackers-responsible-for-two-malicious-cyber-campaigns-against-UK
-
Malicious SSH backdoor sneaks into xz, Linux world’s data compression library
First seen on theregister.com Jump to article: www.theregister.com/2024/03/29/malicious_backdoor_xz/
-
Raspberry Robin Returns: New Malware Campaign Spreading Through WSF Files
Cybersecurity researchers have discovered a new Raspberry Robin campaign wave that propagates the malware through malicious Windows Script Files (WSFs… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/raspberry-robin-returns-new-malware.html
-
SAP Applications Increasingly in Attacker Crosshairs, Report Shows
Malicious hackers are targeting SAP applications at an alarming pace, according to warnings from Onapsis and Flashpoint. The post s hackers are target… First seen on securityweek.com Jump to article: www.securityweek.com/sap-applications-increasingly-in-attacker-crosshairs-report-shows/
-
The Dark Side of EDR: Repurpose EDR as an Offensive Tool
See how a SafeBreach Labs researcher bypassed the anti-tampering mechanism of a leading EDR to execute malicious code within one of the EDR’s own proc… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/the-dark-side-of-edr-repurpose-edr-as-an-offensive-tool/
-
Misinformation and hacktivist campaigns targeting the Philippines skyrocket
Amidst rising tensions with China in the SCS, Resecurity observed a spike in malicious cyber activity targeting the Philippines in Q1 2024. Amidst ris… First seen on securityaffairs.com Jump to article: securityaffairs.com/161909/intelligence/misinformation-targeting-the-philippines.html
-
Cybercriminals Targeting Latin America with Sophisticated Phishing Scheme
A new phishing campaign has set its eyes on the Latin American region to deliver malicious payloads to Windows systems.The phishing email contained a … First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/cybercriminals-targeting-latin-america.html
-
New SteganoAmor attacks use steganography to target 320 orgs globally
A new campaign conducted by the TA558 hacking group is concealing malicious code inside images using steganography to deliver various malware tools on… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/new-steganoamor-attacks-use-steganography-to-target-320-orgs-globally/
-
Steganography Campaign Targets Global Enterprises
Financially Motivated Threat Group Embeds Malicious Code in Images. Financially motivated hackers are using the oldie-but-goodie technique of hiding m… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/steganography-campaign-targets-global-enterprises-a-24873
-
FBI and AFP Arrest Alleged Developer, Marketer of Firebird/Hive RAT
Firebird RAT, also known as Hive, crippled in an international sting operation. The FBI and AFP arrested the developer and marketer of this malicious … First seen on hackread.com Jump to article: www.hackread.com/fbi-afp-arrest-developer-firebird-hive-rat/
-
MSP Guide: How to Safeguard Your Clients During a Ransomware Attack
As a managed service provider (MSP), you are tasked with keeping clients from malicious software… The post aged service provider (MSP), you are task… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/04/msp-guide-how-to-safeguard-your-clients-during-a-ransomware-attack/
-
Threat Actors Manipulate GitHub Search to Deliver Malware
Checkmarx warns of a new attack relying on GitHub search manipulation to deliver malicious code. The post x warns of a new attack relying on GitHub se… First seen on securityweek.com Jump to article: www.securityweek.com/threat-actors-manipulate-github-search-to-deliver-malware/
-
Malicious Code in XZ Utils for Linux Systems Enables Remote Code Execution
The malicious code inserted into the open-source library XZ Utils, a widely used package present in major Linux distributions, is also capable of faci… First seen on thehackernews.com Jump to article: thehackernews.com/2024/04/malicious-code-in-xz-utils-for-linux.html
-
‘Malicious Activity’ Hits the University of Cambridge’s Medical School
Multiple university departments linked to the Clinical School Computing Service have been inaccessible for a month. The university has not revealed th… First seen on wired.com Jump to article: www.wired.com/story/university-of-cambridge-medical-school-malicious-activity/

