A new cyber threat, "GoldenJackal," is targeting government and diplomatic entities in the Middle East and South Asia. This stealthy and capable adversary employs tailored #malware to steal data and conduct surveillance.
Read details: https://thehackernews.com/2023/05/goldenjackal-new-threat-group-targeting.html
Read details: https://thehackernews.com/2023/05/goldenjackal-new-threat-group-targeting.html
π11π€―6π4β‘2π±2
π¨ Alert: Kimsuky, the North Korean APT group, is back in action! They're using a new custom malware called "RandomQuery" to conduct reconnaissance and steal sensitive information.
Read details: https://thehackernews.com/2023/05/north-korean-kimsuky-hackers-strike.html
Read details: https://thehackernews.com/2023/05/north-korean-kimsuky-hackers-strike.html
π16π5π€―4β‘3π€3π1
WINTAPIX: A newly discovered malware, acting as a loader, has been identified in attacks targeting Saudi Arabia, Qatar, and UAE. By exploiting a vulnerable kernel driver, the attacker gains privileged access & executes a multi-stage attack.
https://thehackernews.com/2023/05/new-wintapixsys-malware-engages-in.html
https://thehackernews.com/2023/05/new-wintapixsys-malware-engages-in.html
π€15π12π8π€―3β‘2
Ukraine's state bodies under cyber attack! CERT-UA warns of an espionage campaign targeting ministries. Hackers, known as UAC-0063, are leveraging phishing emails and malicious tools to infiltrate systems.
Read: https://thehackernews.com/2023/05/cyber-attacks-strike-ukraines-state.html
Read: https://thehackernews.com/2023/05/cyber-attacks-strike-ukraines-state.html
π18π11β‘4π3π±3π€1
North Korean Lazarus Group remains relentless in targeting vulnerable Microsoft IIS servers, utilizing DLL side-loading techniques to deploy malicious software in latest espionage operations.
Read details: https://thehackernews.com/2023/05/n-korean-lazarus-group-targets.html
Read details: https://thehackernews.com/2023/05/n-korean-lazarus-group-targets.html
π25π₯5π5π€4β‘3π2π±1
Legion, the Python-based hack tool, evolves with expanded capabilities. Latest version exploits SSH servers and gains access to DynamoDB and CloudWatch credentials associated with AWS.
Read details: https://thehackernews.com/2023/05/legion-malware-upgraded-to-target-ssh.html
Read details: https://thehackernews.com/2023/05/legion-malware-upgraded-to-target-ssh.html
π16π9π±5β‘4π₯2
π¨ Popular app gone rogue! "iRecorder - Screen Recorder" app sneaks in information stealing capabilities after a year on Play Store.
Read details: https://thehackernews.com/2023/05/data-stealing-malware-discovered-in.html
Google has finally removed it from the Play Store, but the damage may already be done.
Read details: https://thehackernews.com/2023/05/data-stealing-malware-discovered-in.html
Google has finally removed it from the Play Store, but the damage may already be done.
π32π13π€―11π€6β‘5
Researchers identify a series of watering hole attacks targeting shipping and logistics companies in China.
Read details here: https://thehackernews.com/2023/05/iranian-tortoiseshell-hackers-targeting.html
Read details here: https://thehackernews.com/2023/05/iranian-tortoiseshell-hackers-targeting.html
π22π8β‘7π€―6π€5
π Google introduces GUAC Beta 0.1, an open-source framework to secure software supply chains. By combining SBOMs, vulnerability feeds, and internal metadata, organizations gain a holistic view of their risk profile.
Read details: https://thehackernews.com/2023/05/guac-01-beta-googles-breakthrough.html
Read details: https://thehackernews.com/2023/05/guac-01-beta-googles-breakthrough.html
π29π€7π₯5β‘3
Iranian threat actor Agrius is using a new ransomware strain called Moneybird (programmed in C++) to target Israeli organizations
Read details: https://thehackernews.com/2023/05/iranian-agrius-hackers-targeting.html
Read details: https://thehackernews.com/2023/05/iranian-agrius-hackers-targeting.html
π₯36π12π8π8β‘4π€―3
π¨ A China-based state-sponsored group, Volt Typhoon, has stealthily infiltrated critical infrastructure organizations in the U.S. and Guam, remaining undetected until now.
Learn about their advanced tactics: https://thehackernews.com/2023/05/chinas-stealthy-hackers-infiltrate-us.html
Learn about their advanced tactics: https://thehackernews.com/2023/05/chinas-stealthy-hackers-infiltrate-us.html
π±19π10π€―9π8β‘4π2
Cybercrime group Blacktail is transitioning from using its Buhti ransomware to leaked LockBit and Babuk ransomware versions, expanding its targets to include Windows and Linux systems.
Read details here: https://thehackernews.com/2023/05/buhti-ransomware-gang-switches-tactics.html
Read details here: https://thehackernews.com/2023/05/buhti-ransomware-gang-switches-tactics.html
π14π±4π€―3β‘2π2π₯1
π¨ Alert: Portuguese bank users beware! Brazilian hackers are on the prowl, targeting over 30 financial institutions.
Read details: https://thehackernews.com/2023/05/alert-brazilian-hackers-targeting-users.html
Read details: https://thehackernews.com/2023/05/alert-brazilian-hackers-targeting-users.html
π₯27π8π7π±6β‘2
β‘ An Iranian threat actor targeted a government entity in the UAE, leveraging a "simple yet effective" backdoor called "PowerExchange" to breach their Microsoft Exchange Servers.
Learn more: https://thehackernews.com/2023/05/new-powerexchange-backdoor-used-in.html
Learn more: https://thehackernews.com/2023/05/new-powerexchange-backdoor-used-in.html
β‘24π₯9π7π€6π4π€―3
π¨ Critical security flaws exposed! Hackers can execute code on Zyxel's firewall & VPN products. Don't wait, act now!
Read more π https://thehackernews.com/2023/05/zyxel-issues-critical-security-patches.html
Read more π https://thehackernews.com/2023/05/zyxel-issues-critical-security-patches.html
π₯20π9π7β‘4π€―2π±1
New Botnet Alert! Dark Frost strikes the gaming industry with relentless DDoS attacks.
Find out how this powerful #malware is wreaking havoc: https://thehackernews.com/2023/05/dark-frost-botnet-launches-devastating.html
Find out how this powerful #malware is wreaking havoc: https://thehackernews.com/2023/05/dark-frost-botnet-launches-devastating.html
π17π10β‘5π5π€1
Fortify your cloud app development pipeline with Lee Atchison! Drawing from his 30+ years in the industry, Lee shares comprehensive strategies to mitigate the increasing security risks facing modern application development.
Download this eBook here: https://uptycs.fyi/thn-la-2
Download this eBook here: https://uptycs.fyi/thn-la-2
π28π5π€2
π¨ Urgent Alert: Hackers are exploiting a new zero-day vulnerability to breach Barracuda's Email Security Gateway appliances.
Learn more about the remote code injection flaw π https://thehackernews.com/2023/05/barracuda-warns-of-zero-day-exploited.html
Learn more about the remote code injection flaw π https://thehackernews.com/2023/05/barracuda-warns-of-zero-day-exploited.html
π₯16π7π6β‘3π€―3
β‘ New industrial malware, COSMICENERGY, has been unearthedβa stealthy threat targeting electric transmission operations in Europe, the Middle East, and Asia.
Read details here: https://thehackernews.com/2023/05/new-cosmicenergy-malware-exploits-ics.html
Read details here: https://thehackernews.com/2023/05/new-cosmicenergy-malware-exploits-ics.html
π18π€―7π₯6β‘5π€3
π΅οΈββοΈ Beware: Android Spyware 'Predator' Records Your Calls, Steals Messages, and More!
Discover more about its chilling capabilities here: https://thehackernews.com/2023/05/predator-android-spyware-researchers.html
Discover more about its chilling capabilities here: https://thehackernews.com/2023/05/predator-android-spyware-researchers.html
π€20π€―10π8π₯6β‘2π2
π New security flaw exposed in Google Cloud Platform's Cloud SQL service. Learn how a multi-stage attack chain could have granted unauthorized access to internal data, secrets, and customer information.
Read: https://thehackernews.com/2023/05/severe-flaw-in-google-clouds-cloud-sql.html
Read: https://thehackernews.com/2023/05/severe-flaw-in-google-clouds-cloud-sql.html
π₯21β‘8π8π6π€―3π±2