Cybersecurity researchers today uncovered modus operandi of an elusive "InvisiMole hacking group" that recently been found targeting high-profile military and diplomatic entities for espionage.
https://thehackernews.com/2020/06/invisimole-hackers.html
https://thehackernews.com/2020/06/invisimole-hackers.html
Over 100 browser extensions distributed through Google Chrome Web Store have been caught stealing sensitive user data as part of a massive global surveillance campaign.
Read details: https://thehackernews.com/2020/06/chrome-browser-extensions-spying.html
Read details: https://thehackernews.com/2020/06/chrome-browser-extensions-spying.html
BlueLeaks π§
A group of hacktivists leaked massive 269 GB of data allegedly stolen from more than 200 #police departments, fusion centers, and other law enforcement agencies across the United States.
Details : https://thehackernews.com/2020/06/law-enforcement-data-breach.html
A group of hacktivists leaked massive 269 GB of data allegedly stolen from more than 200 #police departments, fusion centers, and other law enforcement agencies across the United States.
Details : https://thehackernews.com/2020/06/law-enforcement-data-breach.html
Watch Out π₯
Hackers are abusing Google Analytics service to bypass CSP web-security feature and steal Credit Card or other information entered by users on the hacked sites.
Learn how it works β https://thehackernews.com/2020/06/google-analytics-hacking.html
Hackers are abusing Google Analytics service to bypass CSP web-security feature and steal Credit Card or other information entered by users on the hacked sites.
Learn how it works β https://thehackernews.com/2020/06/google-analytics-hacking.html
π New Privacy Features Apple Added to the Upcoming iOS 14 and macOS Big Sur Releases:
β Approximate location
β Password Monitoring
β Privacy Report
β Camera/Mic Recording Indicator
β Control On Cross-App Tracking
β and more...
Details β https://thehackernews.com/2020/06/ios14-macos-big-sur-privacy.html
β Approximate location
β Password Monitoring
β Privacy Report
β Camera/Mic Recording Indicator
β Control On Cross-App Tracking
β and more...
Details β https://thehackernews.com/2020/06/ios14-macos-big-sur-privacy.html
Critical Vulnerabilities Found in GeoVision's Fingerprint and Card Scanners:
β Remote Code Execution (Unpatched)
β Hardcoded Shared Cryptographic Private Keys
β Root Backdoor Account
β Unauthorized Code Execution
Read details β https://thehackernews.com/2020/06/geovision-scanner-vulnerabilities.html
Over 2,500 affected devices accessible over the Internet as well.
β Remote Code Execution (Unpatched)
β Hardcoded Shared Cryptographic Private Keys
β Root Backdoor Account
β Unauthorized Code Execution
Read details β https://thehackernews.com/2020/06/geovision-scanner-vulnerabilities.html
Over 2,500 affected devices accessible over the Internet as well.
(New) Attackers distributed several Docker images containing cryptocurrency-mining malware via Docker Hub to earn thousands of dollars.
Find details here: https://thehackernews.com/2020/06/cryptocurrency-docker-image.html
Find details here: https://thehackernews.com/2020/06/cryptocurrency-docker-image.html
U.S government has filed a superseding indictment against WikiLeaks founder Julian Assange, accusing him of collaborating with LulzSec and Anonymous hacking groups.
Read: https://thehackernews.com/2020/06/wikileaks-lulzsec-anonymous-hackers.html
Read: https://thehackernews.com/2020/06/wikileaks-lulzsec-anonymous-hackers.html
22-Year-Old Washington-based hacker has been sentenced to 13 months in prison for his role in creating 'Satori' IoT botnet malware β one of the successors of Mirai botnet β and compromising thousands of systems to launch DDoS attacks against various online services.
Read more: https://thehackernews.com/2020/06/ddos-botnet-hacker-jailed.html
Read more: https://thehackernews.com/2020/06/ddos-botnet-hacker-jailed.html
e-Commerce site hackers are now hiding malicious web-skimming code inside image metadata to covertly steal credit card information entered by visitors.
Read details β https://thehackernews.com/2020/06/image-credit-card-skimmers.html
Read details β https://thehackernews.com/2020/06/image-credit-card-skimmers.html
Russian Hacker Gets 9-Year Jail for Running Online Bazaar of Stolen Credit Cards
Read More: https://thehackernews.com/2020/06/russian-credit-card-hacker.html
Read More: https://thehackernews.com/2020/06/russian-credit-card-hacker.html
Advanced 'StrongPity' hackers return with retooled spyware and new watering hole attacks targeting the Kurdish community in Syria and Turkey for surveillance and intelligence exfiltration.
Read more: https://thehackernews.com/2020/06/strongpity-syria-turkey-hackers.html
Read more: https://thehackernews.com/2020/06/strongpity-syria-turkey-hackers.html
EvilQuest β New ransomware is targeting macOS users via pirated apps.
Details: https://thehackernews.com/2020/07/macos-ransomware-attack.html
Besides encrypting files, the malware also comes with capabilities to execute in-memory payloads, create reverse shell, and steal keystrokes & cryptocurrency wallet files.
Details: https://thehackernews.com/2020/07/macos-ransomware-attack.html
Besides encrypting files, the malware also comes with capabilities to execute in-memory payloads, create reverse shell, and steal keystrokes & cryptocurrency wallet files.
In case you missed it...
Microsoft releases urgent Windows software updates to patch two high-risk RCE vulnerabilities affecting hundreds of millions of Windows10 and Server users.
Details: https://thehackernews.com/2020/07/windows-security-update.html
Microsoft releases urgent Windows software updates to patch two high-risk RCE vulnerabilities affecting hundreds of millions of Windows10 and Server users.
Details: https://thehackernews.com/2020/07/windows-security-update.html
WATCH OUT, Sysadmins!
Critical flaws (CVE-2020-9498, CVE-2020-9497) discovered in Apache Guacamoleβpopular remote desktop (RDP) applicationβcould put remote Windows and Linux systems at risk of hacking.
Read more β€ https://thehackernews.com/2020/07/apache-guacamole-hacking.html
Critical flaws (CVE-2020-9498, CVE-2020-9497) discovered in Apache Guacamoleβpopular remote desktop (RDP) applicationβcould put remote Windows and Linux systems at risk of hacking.
Read more β€ https://thehackernews.com/2020/07/apache-guacamole-hacking.html
European and British police have arrested 746 alleged drug dealers and other criminals after infiltrating into a global EncroChat ENCRYPTED CHAT NETWORK that was used to plot drug deals, money laundering, extortion, and even murders.
Read More: https://thehackernews.com/2020/07/encrochat-encrypted-phone.html
Read More: https://thehackernews.com/2020/07/encrochat-encrypted-phone.html
Critical Unauthorized RCE Vulnerability (CVE-2020-5902 with CVSS Score 10/10) Affects F5's BIG-IP Application Security Servers Used in large Enterprises, Data Centers, and Cloud Computing Environments.
Details β https://thehackernews.com/2020/07/f5-big-ip-application-security.html
Apply Newly Released Patch Updates ASAP!
Details β https://thehackernews.com/2020/07/f5-big-ip-application-security.html
Apply Newly Released Patch Updates ASAP!
< Project Freta π₯ >
Microsoft launches a new free, cloud-based Linux forensics tool that analyzes virtual machine (VM) snapshots for evidence of sabotage β including rootkits, kernel-level compromises & other advanced malware.
Read Details: https://thehackernews.com/2020/07/microsoft-linux-forensics-rootkit.html
Microsoft launches a new free, cloud-based Linux forensics tool that analyzes virtual machine (VM) snapshots for evidence of sabotage β including rootkits, kernel-level compromises & other advanced malware.
Read Details: https://thehackernews.com/2020/07/microsoft-linux-forensics-rootkit.html
Citrix Releases Critical Software Patches for 11 New Security Vulnerabilities Affecting ADC, Gateway, and SD-WAN WANOP Appliances.
Read More: https://thehackernews.com/2020/07/citrix-software-security-update.html
Read More: https://thehackernews.com/2020/07/citrix-software-security-update.html
WATCH OUT!
Eleven new innocent-looking Android apps loaded with 'billing fraud' Joker malware ONCE AGAIN bypass Google's security protections, aiming to infect millions via Play Store.
Read more: https://thehackernews.com/2020/07/joker-android-mobile-virus.html
Eleven new innocent-looking Android apps loaded with 'billing fraud' Joker malware ONCE AGAIN bypass Google's security protections, aiming to infect millions via Play Store.
Read more: https://thehackernews.com/2020/07/joker-android-mobile-virus.html