๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News
26K subscribers
89.2K links
๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Download Telegram
๐Ÿš€ The who, where, and how of APT attacks โ€“ Week in security with Tony Anscombe ๐Ÿš€

This week, ESET experts released several research publications that shine the spotlight on a number of notable campaigns and broader developments on the threat landscape.

๐Ÿ“– Read more.

๐Ÿ”— Via "ESET - WeLiveSecurity"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Grandoreiro Banking Trojan Resurfaces, Targeting Over 1,500 Banks Worldwide ๐Ÿ–‹๏ธ

The threat actors behind the Windowsbased Grandoreiro banking trojan have returned in a global campaign since March 2024 following a law enforcement takedown in January. The largescale phishing attacks, likely facilitated by other cybercriminals via a malwareasaservice MaaS model, target over 1,500 banks across the world, spanning more than 60 countries in Central and South.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Chinese Nationals Arrested for Laundering $73 Million in Pig Butchering Crypto Scam ๐Ÿ–‹๏ธ

The U.S. Department of Justice DoJ has charged two arrested Chinese nationals for allegedly orchestrating a pig butchering scam that laundered at least 73 million from victims through shell companies. The individuals, Daren Li, 41, and Yicheng Zhang, 38, were arrested in Atlanta and Los Angeles on April 12 and May 16, respectively. The foreign nationals have been "charged for leading a scheme.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Latrodectus Malware Loader Emerges as IcedID's Successor in Phishing Campaigns ๐Ÿ–‹๏ธ

Cybersecurity researchers have observed a spike in email phishing campaigns starting early March 2024 that delivers Latrodectus, a nascent malware loader believed to be the successor to the IcedID malware. "These campaigns typically involve a recognizable infection chain involving oversized JavaScript files that utilize WMI's ability to invoke msiexec.exe and install a remotelyhosted MSI.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Chinese Duo Indicted For Laundering $73m in Pig Butchering Case ๐Ÿ“”

Two Chinese nationals have been charged with laundering over 73m in a pig butchering scheme.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ‘1
๐Ÿ“ข FBI seizes BreachForums infrastructure โ€” but successor sites are already popping up ๐Ÿ“ข

In the latest win for law enforcement, BreachForums has been taken down in an FBI operation but alternatives are already popping up.

๐Ÿ“– Read more.

๐Ÿ”— Via "ITPro"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Antivirus Policy ๐Ÿฆฟ

Antivirus software is critical to ensure information security of organizational networks and resources. By establishing an antivirus policy, organizations can quickly identify and address malware and virus threats, as well as detect and appropriately respond to incidents. The purpose of this Antivirus Policy, written by Madeline Clarke for TechRepublic Premium, is to provide guidelines for ...

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Grandoreiro Banking Trojan is Back With Major Updates ๐Ÿ“”

The malwareasaservice Grandoreiro Trojan is now targeting 1500 global banks, says IBM.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆ… Tiny BackDoor Goes Undetected โ€“ Suspected Turla leveraging MSBuild to Evade detection ๐Ÿฆ…

Key Takeaways  Cyble Research and Intelligence Labs CRIL observed an interesting campaign that utilized malicious LNK files, which could potentially be distributed via spam email.  The Threat Actor TA behind this campaign uses human rights seminar invitations and public advisories as a lure to infect users with a malicious payload.   This campaign highlights the attackers' sophistication by embedding lure PDFs and MSBuild project files within the .LNK files for seamless execution.  The TA executes the project files using the Microsoft Build Engine MSBuild to deliver a stealthy, fileless final payload.  The final payload acts as a backdoor, enabling TAs to execute various commands and take control of the infected system.  Our analysis indicates that the final payload exhib...

๐Ÿ“– Read more.

๐Ÿ”— Via "CYBLE"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Cyber Criminals Exploit GitHub and FileZilla to Deliver Cocktail Malware ๐Ÿ–‹๏ธ

A "multifaceted campaign" has been observed abusing legitimate services like GitHub and FileZilla to deliver an array of stealer malware and banking trojans such as Atomic aka AMOS, Vidar, Lumma aka LummaC2, and Octo by impersonating credible software like 1Password, Bartender 5, and Pixelmator Pro. "The presence of multiple malware variants suggests a broad crossplatform targeting.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Defending Your Commits From Known CVEs With GitGuardian SCA And Git Hooks ๐Ÿ–‹๏ธ

All developers want to create secure and dependable software. They should feel proud to release their code with the full confidence they did not introduce any weaknesses or antipatterns into their applications. Unfortunately, developers are not writing their own code for the most part these days. 96 of all software contains some opensource components, and opensource components make.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Foxit PDF Reader Flaw Exploited by Hackers to Deliver Diverse Malware Arsenal ๐Ÿ–‹๏ธ

Multiple threat actors are weaponizing a design flaw in Foxit PDF Reader to deliver a variety of malware such as Agent Tesla, AsyncRAT, DCRat, NanoCore RAT, NjRAT, Pony, Remcos RAT, and XWorm. "This exploit triggers security warnings that could deceive unsuspecting users into executing harmful commands," Check Point said in a technical report. "This exploit has been used by multiple.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ•ต๏ธโ€โ™‚๏ธ Android Banking Trojan Antidot Disguised as Google Play Update ๐Ÿ•ต๏ธโ€โ™‚๏ธ

Antidot uses overlay attacks and keylogging to target users' financial data.

๐Ÿ“– Read more.

๐Ÿ”— Via "Dark Reading"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ The 5 Best Encryption Key Management Software for 2024 ๐Ÿฆฟ

What is the best encryption key management software for your business? Use our guide to compare the features of our top picks.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ•ต๏ธโ€โ™‚๏ธ What American Enterprises Can Learn From Europe's GDPR Mistakes ๐Ÿ•ต๏ธโ€โ™‚๏ธ

As the US braces for a data privacy overhaul, companies need to update data practices, train staff, and ensuring compliance from the outset to avoid Europe's costly missteps.

๐Ÿ“– Read more.

๐Ÿ”— Via "Dark Reading"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ–‹๏ธ Iranian MOIS-Linked Hackers Behind Destructive Attacks on Albania and Israel ๐Ÿ–‹๏ธ

An Iranian threat actor affiliated with the Ministry of Intelligence and Security MOIS has been attributed as behind destructive wiping attacks targeting Albania and Israel under the personas Homeland Justice and Karma, respectively. Cybersecurity firm Check Point is tracking the activity under the moniker Void Manticore, which is also known as Storm0842 formerly DEV0842 by.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ‘1
๐Ÿ“” Network Outages Hit 59% of Multi-Site Businesses Monthly ๐Ÿ“”

A new report from Kaspersky also shows that 46 of businesses experience network problems between one and three times a month.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” Iran-Linked Void Manticore Intensifies Cyber-Attacks on Israel ๐Ÿ“”

CPR has suggested a significant overlap in targets between Void Manticore and Scarred Manticore.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ“” AI Chatbots Highly Vulnerable to Jailbreaks, UK Researchers Find ๐Ÿ“”

The UK AI Safety Institute tested four mainstream AI chatbots with basic jailbreak attacks.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿงจ How to Safely Date Online ๐Ÿงจ

According to Pew, threeinten U.S. adults say they have used a dating site or app. That number climbs to 53... The post How to Safely Date Online appeared first on McAfee Blog.

๐Ÿ“– Read more.

๐Ÿ”— Via "McAfee"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿฆฟ Top ITSM Certifications for 2024 ๐Ÿฆฟ

Learn about ITSM certifications and which ones are most important for various roles within the technology sector.

๐Ÿ“– Read more.

๐Ÿ”— Via "Tech Republic"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
๐Ÿ‘2