Chinese and Russian cybercriminals are upping their game with a new malware called SILKLOADER to evade detection and propagate Cobalt Strike.
Learn more: https://thehackernews.com/2023/03/chinese-and-russian-hackers-using.html
Learn more: https://thehackernews.com/2023/03/chinese-and-russian-hackers-using.html
😁17👍10🔥7⚡3🤔1😱1
Winter Vivern, also known as UAC-0114, has been linked to campaigns targeting government agencies and private businesses in India, Lithuania, Slovakia, and the Vatican.
Learn more: https://thehackernews.com/2023/03/winter-vivern-apt-group-targeting.html
Learn more: https://thehackernews.com/2023/03/winter-vivern-apt-group-targeting.html
👍13🔥2⚡1👏1
Uh-oh! Google has just uncovered 18 zero-day vulnerabilities in #Samsung's Exynos chips, some of which can be exploited remotely to completely take over your phone.
Learn more: https://thehackernews.com/2023/03/google-uncovers-18-severe-security.html
Learn more: https://thehackernews.com/2023/03/google-uncovers-18-severe-security.html
🤯59👍11🤔10🔥6😱3⚡2👏2😁2
Don't fall for fake messaging apps! Researchers have discovered trojanized versions of Telegram and WhatsApp infecting Android and Windows users with cryptocurrency clipper malware.
Learn more: https://thehackernews.com/2023/03/lookalike-telegram-and-whatsapp.html
Learn more: https://thehackernews.com/2023/03/lookalike-telegram-and-whatsapp.html
😱23👍18🔥8🤔5🤯3
Watch out, HinataBot is here!
A new Golang-based botnet exploits unpatched vulnerabilities and weak credentials to take over routers and servers and launch DDoS attacks.
Learn more: https://thehackernews.com/2023/03/new-golang-based-hinatabot-exploiting.html
A new Golang-based botnet exploits unpatched vulnerabilities and weak credentials to take over routers and servers and launch DDoS attacks.
Learn more: https://thehackernews.com/2023/03/new-golang-based-hinatabot-exploiting.html
👍22⚡5😱3🔥2😁2
💻🛡️🔒 Outdated security strategies leaving you exposed?
Discover the power of the Identity Perimeter & Zero Trust Access in our can't-miss webinar featuring Dor Dali of Cyolo.
👉 Register now: https://thehackernews.com/2023/03/thn-webinar-3-research-backed-ways-to.html
Get practical tips to protect your business!
Discover the power of the Identity Perimeter & Zero Trust Access in our can't-miss webinar featuring Dor Dali of Cyolo.
👉 Register now: https://thehackernews.com/2023/03/thn-webinar-3-research-backed-ways-to.html
Get practical tips to protect your business!
👍30⚡9👏6🤯4🤔2
🔐👾 LockBit 3.0 — FBI, CISA, and MS-ISAC have issued a joint advisory on this dangerous ransomware, detailing indicators of compromise, tactics, techniques and procedures.
Read: https://thehackernews.com/2023/03/lockbit-30-ransomware-inside.html
Read: https://thehackernews.com/2023/03/lockbit-30-ransomware-inside.html
👍34😁9🔥7⚡6😱4🤯2👏1
⚠️ Suspected Chinese hacking group UNC3886 linked to zero-day exploitation in Fortinet FortiOS, targeting governments entities and large organizations.
Learn more: https://thehackernews.com/2023/03/chinese-hackers-exploit-fortinet-zero.html
Learn more: https://thehackernews.com/2023/03/chinese-hackers-exploit-fortinet-zero.html
👍23🔥11🤯5😁3⚡2
💥 Busted! "Pompompurin" unmasked! New York man arrested for running notorious BreachForums hacking site.
Learn more: https://thehackernews.com/2023/03/pompompurin-unmasked-infamous.html
Learn more: https://thehackernews.com/2023/03/pompompurin-unmasked-infamous.html
🤯52👍11😁9🤔8🔥6⚡4😱1
🕷️ Mummy Spider, Gold Crestwood, TA542... whatever you call it, Emotet is back!
⚠️Now hiding in Microsoft OneNote email attachments to bypass macro-based security restrictions and compromise systems.
Learn more: https://thehackernews.com/2023/03/emotet-rises-again-evades-macro.html
⚠️Now hiding in Microsoft OneNote email attachments to bypass macro-based security restrictions and compromise systems.
Learn more: https://thehackernews.com/2023/03/emotet-rises-again-evades-macro.html
😁22🔥13🤯9👍6⚡2
🚨CatB ransomware operation utilizes DLL search order hijacking to evade detection and launch payloads.
Learn more: https://thehackernews.com/2023/03/researchers-shed-light-on-catb.html
Learn more: https://thehackernews.com/2023/03/researchers-shed-light-on-catb.html
👍32🔥9⚡4😁2🤯2
🚨 Cybersecurity Alert: Mispadu banking trojan targets Latin American countries, compromising legit websites and stealing credentials. Attackers' misconfiguration exposes 8 out of 20 Command & Control Servers, revealing over 90,000 stolen credentials from 17.5K unique websites across all sectors.
Learn more: https://thehackernews.com/2023/03/mispadu-banking-trojan-targets-latin.html
Learn more: https://thehackernews.com/2023/03/mispadu-banking-trojan-targets-latin.html
👍30🔥7😱7🤔5👏2😁2
Heads up! dotRunpeX is a new malware injector that distributes various known malware families via phishing emails and malicious Google Ads.
Learn more: https://thehackernews.com/2023/03/new-dotrunpex-malware-delivers-multiple.html
Learn more: https://thehackernews.com/2023/03/new-dotrunpex-malware-delivers-multiple.html
👍30🔥5😁1
💸 Over $1.6 million in cryptocurrency stolen from hot wallets due to a zero-day security flaw in General Bytes' ATM software.
Learn more: https://thehackernews.com/2023/03/hackers-steal-over-16-million-in-crypto.html
Learn more: https://thehackernews.com/2023/03/hackers-steal-over-16-million-in-crypto.html
🔥36🤯18👍10😁10😱9⚡2
55 zero-day vulnerabilities exploited in 2022, with Microsoft, Google, and Apple software the most targeted!
Though lower than 81 in 2021, still a significant uptick in recent years.
Learn more: https://thehackernews.com/2023/03/from-ransomware-to-cyber-espionage-55.html
Though lower than 81 in 2021, still a significant uptick in recent years.
Learn more: https://thehackernews.com/2023/03/from-ransomware-to-cyber-espionage-55.html
🤯27👍15😁5⚡4👏1🤔1
⚠️ Beware of ShellBot malware! Weak SSH credentials on #Linux servers are being exploited in a new campaign. ShellBot can perform DDoS attacks & exfiltrate data.
Learn more: https://thehackernews.com/2023/03/new-shellbot-ddos-malware-targeting.html
Learn more: https://thehackernews.com/2023/03/new-shellbot-ddos-malware-targeting.html
👍22🤯6⚡3🤔2
⚡️ New "Bad Magic" activity cluster targeting gov't, agriculture & transportation orgs in Donetsk, Lugansk & Crimea amid ongoing Russia-Ukraine conflict using a new modular framework, "CommonMagic."
Learn more: https://thehackernews.com/2023/03/new-bad-magic-cyber-threat-disrupt.html
Learn more: https://thehackernews.com/2023/03/new-bad-magic-cyber-threat-disrupt.html
👍26⚡5😱5😁3🤔3
BreachForums has been officially taken down, but the administrator promises "it's not the end."
Learn more: https://thehackernews.com/2023/03/breachforums-administrator-baphomet.html
Speculations arise that law enforcement may have obtained access to the site's configurations and user information.
Learn more: https://thehackernews.com/2023/03/breachforums-administrator-baphomet.html
Speculations arise that law enforcement may have obtained access to the site's configurations and user information.
🔥31👍13😱10🤔6⚡3🤯3👏2😁2
New malware alert!
REF2924, a threat group targeting entities in South and Southeast Asia, has been spotted deploying NAPLISTENER - an HTTP listener designed to evade network-based detection.
Learn more: https://thehackernews.com/2023/03/new-naplistener-malware-used-by-ref2924.html
REF2924, a threat group targeting entities in South and Southeast Asia, has been spotted deploying NAPLISTENER - an HTTP listener designed to evade network-based detection.
Learn more: https://thehackernews.com/2023/03/new-naplistener-malware-used-by-ref2924.html
🤯22👍14😁4🔥2⚡1
🚨 NuGet Repository under attack! New malicious campaign aims to infect DotNET developer systems with cryptocurrency stealer malware.
Learn more: https://thehackernews.com/2023/03/rogue-nuget-packages-infect-net.html
Beware of 13 rogue packages downloaded 160k+ times in the past month.
Learn more: https://thehackernews.com/2023/03/rogue-nuget-packages-infect-net.html
Beware of 13 rogue packages downloaded 160k+ times in the past month.
👍24😁8🤯7👏4🔥2⚡1