Chinese-speaking actor behind DragonSpark attacks targeting organizations in East Asia using Golang malware and unusual techniques to evade detection.
Read details: https://thehackernews.com/2023/01/chinese-hackers-utilize-golang-malware.html
Read details: https://thehackernews.com/2023/01/chinese-hackers-utilize-golang-malware.html
๐33โก11๐3๐2๐ค2๐คฏ2
VMware releases patch for 4 vulnerabilities in vRealize Log Insight, including 2 critical flaws (CVE-2022-31706 and CVE-2022-31704) that could lead to remote code execution attacks.
Read details: https://thehackernews.com/2023/01/vmware-releases-patches-for-critical.html
Read details: https://thehackernews.com/2023/01/vmware-releases-patches-for-critical.html
๐30๐2
LastPassโ parent company GoTo (formerly LogMeIn) has experienced a data breach in which cybercriminals stole customers' encrypted backups and an encryption key used to secure data for some customers.
Read: https://thehackernews.com/2023/01/lastpass-parent-company-goto-suffers.html
Read: https://thehackernews.com/2023/01/lastpass-parent-company-goto-suffers.html
๐คฏ52๐ฅ16๐13๐ฑ9๐7โก5
North Korean group APT38 is targeting cryptocurrency holders by using credential harvesting as a new weapon in its quest for crypto riches.
Read details: https://thehackernews.com/2023/01/north-korean-hackers-turn-to-credential.html
Read details: https://thehackernews.com/2023/01/north-korean-hackers-turn-to-credential.html
๐20๐คฏ11๐ฅ5๐5๐ค4
Warning: A massive malware campaign has infected more than 4,500 WordPress websites and is redirecting their visitors to sketchy ad pages.
Read: https://thehackernews.com/2023/01/over-4500-wordpress-sites-hacked-to.html
Keep your website secure and always be cautious of suspicious links.
Read: https://thehackernews.com/2023/01/over-4500-wordpress-sites-hacked-to.html
Keep your website secure and always be cautious of suspicious links.
๐38๐ฑ14๐ฅ9๐5โก3๐1๐คฏ1
ALERT: Two federal agencies in the U.S. have fallen victim to a widespread malicious campaign using RMM software for phishing scams.
Read details: https://thehackernews.com/2023/01/us-federal-agencies-fall-victim-to.html
Read details: https://thehackernews.com/2023/01/us-federal-agencies-fall-victim-to.html
๐คฏ27๐8๐ฑ8โก7๐ฅ7๐4
New research has uncovered connections between the operations of Moses Staff and Abraham's Ax, two politically motivated hacktivist groups.
Read details: https://thehackernews.com/2023/01/researchers-uncover-connection-bw-moses.html
Read details: https://thehackernews.com/2023/01/researchers-uncover-connection-bw-moses.html
๐12โก3๐ฅ2
Researchers have released proof-of-concept exploit code for a high-severity security vulnerability (CVE-2022-34689) in the Windows CryptoAPI, which was discovered by the NSA and NCSC.
Read details: https://thehackernews.com/2023/01/researchers-release-poc-exploit-for.html
Read details: https://thehackernews.com/2023/01/researchers-release-poc-exploit-for.html
๐22๐ฑ10โก3๐ฅ1
Researchers have identified a new Python-based malware that uses WebSockets for both command and control communication and data exfiltration.
Read details: https://thehackernews.com/2023/01/pyration-new-python-based-rat-utilizes.html
Read details: https://thehackernews.com/2023/01/pyration-new-python-based-rat-utilizes.html
๐22๐ฅ8โก5๐2
Google shuts down pro-Chinese influence operation DRAGONBRIDGE, with over 50,000 instances of activity dismantled in 2022.
Read: https://thehackernews.com/2023/01/google-takes-down-50000-instances-of.html
Read: https://thehackernews.com/2023/01/google-takes-down-50000-instances-of.html
๐40๐9๐ฅ2โก1๐คฏ1๐ฑ1
๐ฅ Victory against cybercrime!
International law enforcement agencies have taken down the infrastructure behind the HIVE ransomware-as-a-service operation in a joint effort across 13 countries.
Details: https://thehackernews.com/2023/01/hive-ransomware-infrastructure-seized.html
International law enforcement agencies have taken down the infrastructure behind the HIVE ransomware-as-a-service operation in a joint effort across 13 countries.
Details: https://thehackernews.com/2023/01/hive-ransomware-infrastructure-seized.html
๐73๐15๐ฅ15๐ฑ11๐คฏ1
U.K.'s cybersecurity agency has issued a warning about cyberattacks by Russian & Iranian state-sponsored hacker groups targeting key sectors, including defense, government organizations & even academia, journalists, think tanks and activists.
https://thehackernews.com/2023/01/british-cyber-agency-warns-of-russian.html
https://thehackernews.com/2023/01/british-cyber-agency-warns-of-russian.html
๐16๐คฏ16โก5๐5
PlugX just got sneakier!
Cybersecurity researchers uncover a new variant that infects attached USB media devices to spread the malware to other systems.
Read details: https://thehackernews.com/2023/01/researchers-discover-new-plugx-malware.html
Cybersecurity researchers uncover a new variant that infects attached USB media devices to spread the malware to other systems.
Read details: https://thehackernews.com/2023/01/researchers-discover-new-plugx-malware.html
๐19๐ฅ12โก6๐3๐1
Cybersecurity researchers have uncovered the true identity of the threat actor behind the Golden Chickens malware-as-a-service.
Read details: https://thehackernews.com/2023/01/experts-uncover-identity-of-mastermind.html
Read details: https://thehackernews.com/2023/01/experts-uncover-identity-of-mastermind.html
๐27๐12โก6๐ฑ5๐2๐คฏ2
Ukraine is under attack from a new Golang-based data wiper malware called "SwiftSlicer." The attackers have been identified as Sandworm, a known nation-state group with ties to the Russian military.
Read: https://thehackernews.com/2023/01/ukraine-hit-with-new-golang-based.html
Read: https://thehackernews.com/2023/01/ukraine-hit-with-new-golang-based.html
๐ฑ32๐23๐12๐ฅ9โก6๐ค3๐คฏ3๐2
The Internet Systems Consortium (ISC) has released security patches for multiple new vulnerabilities in the BIND DNS software suite that could lead to a DoS condition and system failures.
Read: https://thehackernews.com/2023/01/isc-releases-security-patches-for-new.html
Read: https://thehackernews.com/2023/01/isc-releases-security-patches-for-new.html
๐คฏ25๐13โก7๐4๐ฑ3๐ค1
Microsoft urges customers to keep their servers up to date and implement additional security measures, such as enabling Windows Extended Protection & configuring certificate-based signing of #PowerShell serialization payloads.
Read: https://thehackernews.com/2023/01/microsoft-urges-customers-to-secure-on.html
Read: https://thehackernews.com/2023/01/microsoft-urges-customers-to-secure-on.html
โก34๐28๐ฑ7๐6๐2
Gootkit malware continues to evolve and become more sophisticated, with notable changes to the toolkit, adding new components and obfuscations to their infection chains.
Read: https://thehackernews.com/2023/01/gootkit-malware-continues-to-evolve.html
Read: https://thehackernews.com/2023/01/gootkit-malware-continues-to-evolve.html
๐ฅ25๐21๐ฑ5๐4โก3๐3
Urgent Alert โ A critical RCE vulnerability in the Realtek Jungle SDK is being weaponized by attackers to hack IoT devices, with 134 MILLION exploitation attempts recorded in the past 2 months alone.
Read: https://thehackernews.com/2023/01/realtek-vulnerability-under-attack-134.html
Read: https://thehackernews.com/2023/01/realtek-vulnerability-under-attack-134.html
๐คฏ16๐8๐ฑ7โก5๐ฅ5๐4
Beware of the latest cyber threat๐จ
Hackers are distributing a new Golang-based info stealer malware, known as Titan Stealer, through Telegram channels to other cybercriminals โ that can steal browser credentials, crypto wallets, and more.
Read: https://thehackernews.com/2023/01/titan-stealer-new-golang-based.html
Hackers are distributing a new Golang-based info stealer malware, known as Titan Stealer, through Telegram channels to other cybercriminals โ that can steal browser credentials, crypto wallets, and more.
Read: https://thehackernews.com/2023/01/titan-stealer-new-golang-based.html
๐คฏ41๐25๐ฅ7โก5๐5๐ฑ5๐3
GitHub reports unauthorized access ๐ป๐ฎโโ๏ธ to Desktop & Atom apps repositories, leading to exposure of encrypted ๐ code-signing certificates.
Read details: https://thehackernews.com/2023/01/github-breach-hackers-stole-code.html
Read details: https://thehackernews.com/2023/01/github-breach-hackers-stole-code.html
๐คฏ21๐11๐ฑ8