-
Apr 25, 2023
North Korea-linked BlueNoroff APT group has been observed by security firm Jamf using a new macOS malware called RustBucket in recent attacks.… read more »
-
Apr 24, 2023
A simple, self-hosted and secure solution to publish a TiddlyWiki site.… read more »
-
Apr 21, 2023
Cybercriminals are using a new method called RBAC Buster to create persistent backdoor accounts on Kubernetes clusters and use their resources for Monero crypto-mining.… read more »
-
Apr 21, 2023
Google has fixed a security flaw called GhostToken that allowed attackers to backdoor Google Cloud Platform (GCP) users' accounts using malicious OAuth applications installed from the Google Marketplace or third-party providers. … read more »
-
Apr 20, 2023
The Lazarus Group, a North Korea-aligned state-sponsored actor, has been attributed to a new campaign called Operation Dream Job that targets Linux users.… read more »
-
Apr 19, 2023
AuKill is a new hacking tool used by threat actors to disable Endpoint Detection & Response (EDR) software on victims' systems before deploying backdoors and ransomware in Bring Your Own Vulnerable Driver (BYOVD) attacks.… read more »
-
Apr 18, 2023
The China-linked APT41 cyberespionage group used the open-source red teaming tool GC2 in an attack against an unnamed Taiwanese media organization in October 2022, using as payload an open source red teaming tool called 'Google Command and Control' (GC2).… read more »
-
Apr 17, 2023
QBot, a dangerous Windows banking Trojan, is being used in a new series of attacks against corporate targets.… read more »
-
Apr 16, 2023
According to some twitter threads published by cybersecurity researchers vx-underground and MalwareHunterTeam, the major ransomware operation LockBit has created encryptors specifically targeting MacOS for the first time.… read more »
-
Apr 16, 2023
A new Android malware called 'Goldoson' has been distributed via Google Play through 60 legitimate apps with 100 million downloads. The malware is part of a third-party library that developers have unwittingly added to their apps.… read more »
-
Apr 14, 2023
The Vice Society ransomware gang has developed a new PowerShell script to automate data theft from compromised networks, which is fully automated and uses 'living off the land' binaries and scripts to remain undetected.… read more »
-
Apr 13, 2023
A cybercriminal gang called Read The Manual (RTM) Locker has been described in detail by cybersecurity researchers of Trellix .… read more »
-
Apr 13, 2023
Legion is a new Python-based tool being sold on Telegram by cybercriminals that targets online email services for phishing and spam attacks.… read more »
-
Apr 11, 2023
Microsoft and Citizen Lab reported that an Israeli-based company, QuaDream, had used a zero-click exploit named ENDOFDAYS to compromise the iPhones of high-risk individuals.… read more »
-
Apr 10, 2023
According to a recent research by security firm Sucuri, a malware campaign called Balada Injector has infected over one million WordPress websites since 2017 by exploiting known vulnerabilities in themes and plugins.… read more »
-
Apr 9, 2023
In a comprehensive analysis published by SentinelOne Labs, researchers dissect the inner workings of AlienFox, a highly versatile and multi-functional malware highlighting its features and the risks it poses.… read more »
-
Apr 9, 2023
In a recent article published by Securelist, researchers detailed the supply chain attack targeting the 3CX Phone System: the attackers managed to compromise the 3CX update infrastructure and deployed a malicious backdoor, dubbed GOPURAM, to unsuspecting users.… read more »
-
Apr 8, 2023
Security researchers at Cyble recently discovered a new ransomware variant with some concerning capabilities. Called 'Cylance, this ransomware has a number of advanced features that allow attackers to customize attacks.… read more »
-
Apr 8, 2023
The report, which summarizes the results of a survey conducted between December 2022 and January 2023, also shows that 52% of IT professionals admit their companies have experienced a data breach or leak in the last 12 months.… read more »
-
Apr 7, 2023
Researchers have discovered that cybercriminals are using Telegram to sell phishing kits and set up phishing campaigns. … read more »