Ukraine has arrested the cybercriminal gang behind Clop ransomware attacks, responsible for $500 million in damages.
Details: https://thehackernews.com/2021/06/ukraine-police-arrest-cyber-criminals.html
Details: https://thehackernews.com/2021/06/ukraine-police-arrest-cyber-criminals.html
The Hacker News
Ukraine Police Arrest Cyber Criminals Behind Clop Ransomware Attacks
A cybercriminal gang responsible for Clop ransomware attacks has been arrested by Ukrainian officials.
Researchers have disclosed a new executable image tampering attack — dubbed "Process Ghosting" — that could be exploited by attackers to circumvent security measures and execute malware code on a Windows system.
Details: https://thehackernews.com/2021/06/researchers-uncover-process-ghosting.html
Details: https://thehackernews.com/2021/06/researchers-uncover-process-ghosting.html
Telegram and Psiphon VPN users in #Iran are being targeted by new spyware from Ferocious Kitten—a covert surveillance APT group that's been in play for six years.
Details: https://thehackernews.com/2021/06/a-new-spyware-is-targeting-telegram-and.html
Details: https://thehackernews.com/2021/06/a-new-spyware-is-targeting-telegram-and.html
The Hacker News
A New Spyware is Targeting Telegram and Psiphon VPN Users in Iran
A spyware in a 6-year-old Ferocious Kitten covert surveillance campaign now targets Telegram and Psiphon VPN users in Iran.
🔥1
APT hacker group "TA402/Molerats" has resurfaced after a two-month hiatus to target government institutions in the Middle East and global government agencies linked to geopolitics in the region.
Details: https://thehackernews.com/2021/06/molerats-hackers-return-with-new.html
Details: https://thehackernews.com/2021/06/molerats-hackers-return-with-new.html
URGENT — A new #browser 0-day #vulnerability has been found being exploited in the wild.
Details: https://thehackernews.com/2021/06/update-your-chrome-browser-to-patch-yet.html
Users of Windows, Mac, and Linux should update their software right away.
Details: https://thehackernews.com/2021/06/update-your-chrome-browser-to-patch-yet.html
Users of Windows, Mac, and Linux should update their software right away.
The Hacker News
Update Your Chrome Browser to Patch Yet Another 0-Day Exploited in-the-Wild
A new Chrome update has been released by Google to patch another zero-day flaw in the wild.
Russian communications regulator Roskomnadzor bans VyprVPN and Opera VPN services in the country for failing to comply with a blacklisting request, and it is likely that more services will be blocked in the near future.
Details: https://thehackernews.com/2021/06/russia-bans-vyprvpn-opera-vpn-services.html
Details: https://thehackernews.com/2021/06/russia-bans-vyprvpn-opera-vpn-services.html
The Hacker News
Russia bans VyprVPN, Opera VPN services for not complying with blacklist request
VyprVPN and Opera VPN services are banned in Russia for not complying with a blacklist request
As cyberattacks on the software supply-chain become a major concern, Google is introducing a new security framework—called SLSA—to ensure the integrity of packages and prevent unauthorized changes.
Details:
https://thehackernews.com/2021/06/google-releases-new-framework-to.html
Details:
https://thehackernews.com/2021/06/google-releases-new-framework-to.html
The Hacker News
Google Releases New Framework to Prevent Software Supply Chain Attacks
Supply chain Levels for Software Artifacts (SLSA) : A New Framework to Prevent Software Supply Chain Attacks.
Researchers warn of increased cyber-espionage activities by Chinese state-sponsored hackers in neighboring countries.
Cyberattacks on Central Asia, India and Pakistan were carried out by suspected hackers from the PLA's 69010 cyber offensive unit and affected India's largest energy company NTPC as well as BSNL, the national telecommunications company.
Read: https://thehackernews.com/2021/06/cyber-espionage-by-chinese-hackers-in.html
Cyberattacks on Central Asia, India and Pakistan were carried out by suspected hackers from the PLA's 69010 cyber offensive unit and affected India's largest energy company NTPC as well as BSNL, the national telecommunications company.
Read: https://thehackernews.com/2021/06/cyber-espionage-by-chinese-hackers-in.html
The Hacker News
Cyber espionage by Chinese hackers in neighbouring nations is on the rise
Researchers warn of growing cyber espionage activities by China-backed PLA unit 69010 hackers in neighbouring nations.
👍1
South Korea's ⚡ Atomic Energy Research Institute has disclosed a hack of its internal network that, according to the Ministry of Science, could be the work of North Korean hackers exploiting a #vulnerability in an unnamed VPN software.
Read: https://thehackernews.com/2021/06/north-korea-exploited-vpn-flaw-to-hack.html
Read: https://thehackernews.com/2021/06/north-korea-exploited-vpn-flaw-to-hack.html
The Hacker News
North Korea Exploited VPN Flaw to Hack South's Nuclear Research Institute
The South Korean government claims the North hacked its nuclear research institute
A team of researchers has developed the "DroidMorph" tool to illustrate how popular antivirus apps for Android continue to remain vulnerable against different permutations of malware.
Read: https://thehackernews.com/2021/06/droidmorph-shows-popular-android.html
Read: https://thehackernews.com/2021/06/droidmorph-shows-popular-android.html
The Hacker News
DroidMorph Shows Popular Android Antivirus Fail to Detect Cloned Malicious Apps
A new research has found that anti-virus programs for Android continue to remain vulnerable against different permutations of malware.
NVIDIA Jetson series chipsets have been found vulnerable to 26 new vulnerabilities, the most serious of which can enable attackers to escalate privileges, cause DoS, and steal information.
Details: https://thehackernews.com/2021/06/nvidia-jetson-chipsets-found-vulnerable.html
Details: https://thehackernews.com/2021/06/nvidia-jetson-chipsets-found-vulnerable.html
The Hacker News
NVIDIA Jetson Chipsets Found Vulnerable to High-severity Flaws
A total of 26 high-severity vulnerabilities affect NVIDIA Jetson chipsets.
Researchers are warning of wormable DarkRadiation ransomware that's targeting RedHat, Debian-based Linux distributions and Docker cloud containers.
Details: https://thehackernews.com/2021/06/wormable-darkradiation-ransomware.html
Details: https://thehackernews.com/2021/06/wormable-darkradiation-ransomware.html
The Hacker News
Wormable DarkRadiation Ransomware Targets Linux and Docker Instances
Wormable DarkRadiation Ransomware Targets Linux and Docker Instances | Read latest news headlines on latest news and technical coverage on cybersecurity, infosec and hacking.
An unpatched critical #vulnerability affects Pling-based marketplace software for Linux systems that could potentially be exploited to launch supply-chain and RCE attacks.
Details: https://thehackernews.com/2021/06/unpatched-critical-flaw-affects-pling.html
Details: https://thehackernews.com/2021/06/unpatched-critical-flaw-affects-pling.html
The Hacker News
Unpatched Flaw in Linux Pling Store Apps Could Lead to Supply-Chain Attacks
Unpatched Critical Flaw Affects Pling Store App for Linux Themes and Icons
A memory leak vulnerability [CVE-2021-20019] affecting SonicWall VPN appliances was left unpatched amidst 0-day attacks that could allow remote attackers access to sensitive data.
Read: https://thehackernews.com/2021/06/sonicwall-left-vpn-flaw-partially.html
Security patches have now been released.
Read: https://thehackernews.com/2021/06/sonicwall-left-vpn-flaw-partially.html
Security patches have now been released.
The Hacker News
SonicWall Left a VPN Flaw Partially Unpatched Amidst 0-Day Attacks
SonicWall left a VPN vulnerability partially unpatched during zero-day attacks.
Important — Update your Tor browser to the latest version to patch a new privacy vulnerability that can be exploited remotely to track users' online activity.
Details: https://thehackernews.com/2021/06/patch-tor-browser-bug-to-prevent.html
Details: https://thehackernews.com/2021/06/patch-tor-browser-bug-to-prevent.html
A hacker with suspected ties to Pakistan targeted an Indian power transmission and generation organization with ReverseRat malware.
Read: https://thehackernews.com/2021/06/pakistan-linked-hackers-targeted-indian.html
Experts say this attacker targets South and Central Asia governments and energy companies.
Read: https://thehackernews.com/2021/06/pakistan-linked-hackers-targeted-indian.html
Experts say this attacker targets South and Central Asia governments and energy companies.
John David McAfee, a controversial mogul and antivirus pioneer, committed suicide in a Barcelona jail cell in Barcelona, just hours after reports that he would be extradited to face federal charges.
Details: https://thehackernews.com/2021/06/antivirus-pioneer-john-mcafee-found.html
Details: https://thehackernews.com/2021/06/antivirus-pioneer-john-mcafee-found.html
The Hacker News
Antivirus Pioneer John McAfee Found Dead in Spanish Jail
McAfee, a pioneer in antivirus technology, was found dead in jail in Spain.
VMware has released security patches for Carbon Black App Control to fix a critical vulnerability (CVE-2021-21998, CVSS 9.4) that could allow attackers to access targeted servers without authentication.
Details: https://thehackernews.com/2021/06/critical-auth-bypass-bug-affects-vmware.html
Details: https://thehackernews.com/2021/06/critical-auth-bypass-bug-affects-vmware.html
👍1
The BIOSConnect feature of Dell systems contains several high-risk vulnerabilities that could lead to the execution of arbitrary code at the BIOS /UEFI level.
https://thehackernews.com/2021/06/bios-disconnect-new-high-severity-flaws.html
At least 128 Dell laptop, desktop and tablet models are affected by this issue.
https://thehackernews.com/2021/06/bios-disconnect-new-high-severity-flaws.html
At least 128 Dell laptop, desktop and tablet models are affected by this issue.
The Hacker News
BIOS Disconnect: New High-Severity Bugs Affect 128 Dell PC and Tablet Models
Researchers disclosed a chain of vulnerabilities affecting the BIOSConnect feature within Dell Client BIOS.
Researchers demonstrated 1-click exploit for Atlassian's project and #software development platform that could potentially be exploited to take over an account and control apps connected via SSO functionality.
Read: https://thehackernews.com/2021/06/one-click-exploit-could-have-let.html
Read: https://thehackernews.com/2021/06/one-click-exploit-could-have-let.html
The Hacker News
One-Click Exploit Could Have Let Attackers Hijack Any Atlassian Account
Attackers could have hacked any Atlassian account using a one-click exploit
👍1
Recently arrested members of the Cl0p ransomware gang were involved in laundering $500 million for malicious actors through a variety of illegal activities.
Read: https://thehackernews.com/2021/06/clop-gang-members-laundered-500-million.html
Cryptocurrency exchange Binance worked with law enforcement to bring down the crime group
Read: https://thehackernews.com/2021/06/clop-gang-members-laundered-500-million.html
Cryptocurrency exchange Binance worked with law enforcement to bring down the crime group
The Hacker News
Clop Gang Partners Laundered $500 Million in Ransomware Payments
Arrested Crop Ransomware Gang members laundered $500 million