Zyxel releases patches for a critical authentication bypass vulnerability (CVE-2022-0342) affecting its firewalls and enterprise VPN products.
Read details: https://thehackernews.com/2022/03/zyxel-releases-patches-for-critical-bug.html
Read details: https://thehackernews.com/2022/03/zyxel-releases-patches-for-critical-bug.html
👍1
North Korean state-backed Lazarus hacking group has been spreading backdoored versions of DeFi wallet apps to gain remote access to victims' systems and steal their cryptocurrencies.
Read details: https://thehackernews.com/2022/04/north-korean-hackers-distributing.html
Read details: https://thehackernews.com/2022/04/north-korean-hackers-distributing.html
Chinese APT hacker group "Deep Panda'' exploits the infamous Log4Shell vulnerability in VMware Horizon to infect targeted servers with rootkit malware signed with a stolen digital certificate.
Details: https://thehackernews.com/2022/04/chinese-hackers-target-vmware-horizon.html
Details: https://thehackernews.com/2022/04/chinese-hackers-target-vmware-horizon.html
👍1
Critical vulnerabilities (CVE-2022-1161, CVE-2022-1159) reported in Rockwell PLCs & engineering workstation software that can be exploited to inject malicious code and stealthily modify automation processes.
Details: https://thehackernews.com/2022/04/critical-bugs-in-rockwell-plc-could.html
Details: https://thehackernews.com/2022/04/critical-bugs-in-rockwell-plc-could.html
Researchers have found a Russian wiper malware, dubbed "AcidRain," believed to be responsible for the recent cyberattack on Viasat that temporarily knocked KA-SAT modems offline.
Read details: https://thehackernews.com/2022/04/russian-wiper-malware-responsible-for.html
Read details: https://thehackernews.com/2022/04/russian-wiper-malware-responsible-for.html
DevOps platform GitLab has released software updates to fix a critical vulnerability (CVE-2022-1162) that could allow attackers to hijack accounts.
Read details: https://thehackernews.com/2022/04/gitlab-releases-patch-for-critical.html
Read details: https://thehackernews.com/2022/04/gitlab-releases-patch-for-critical.html
British police have charged 2 of the 7 teenagers arrested last week for their alleged links to the LAPSUS$ data extortion gang.
Read details: https://thehackernews.com/2022/04/british-police-charge-two-teenagers.html
Read details: https://thehackernews.com/2022/04/british-police-charge-two-teenagers.html
😁1
A 15-year-old developer account hijacking vulnerability has been disclosed in the PEAR PHP repository that could've allowed attackers to launch supply-chain attacks by releasing new malicious versions of existing packages.
Details: https://thehackernews.com/2022/04/15-year-old-bug-in-pear-php-repository.html
Details: https://thehackernews.com/2022/04/15-year-old-bug-in-pear-php-repository.html
Beastmode DDoS botnet is now exploiting recently disclosed vulnerabilities in TOTOLINK routers to infect unpatched devices and expand its reach potentially.
Read details: https://thehackernews.com/2022/04/beastmode-ddos-botnet-exploiting-new.html
Read details: https://thehackernews.com/2022/04/beastmode-ddos-botnet-exploiting-new.html
Researchers have shed light on a previously undocumented "sophisticated" information-stealing malware called "BlackGuard" that is advertised for sale on Russian underground hacking forums.
Read details: https://thehackernews.com/2022/04/experts-shed-light-on-blackguard.html
Read details: https://thehackernews.com/2022/04/experts-shed-light-on-blackguard.html
A new attack, dubbed "Brokenwire," could allow remote attackers to disrupt the ability to charge electric vehicles at scale from a distance of as far as 47m.
Read details: https://thehackernews.com/2022/04/brokenwire-hack-could-let-remote.html
Read details: https://thehackernews.com/2022/04/brokenwire-hack-could-let-remote.html
Several state-sponsored hacker groups are using the ongoing Russian-Ukrainian war as bait to attack a variety of sectors, including energy, finance, and government, with #malware and steal sensitive information.
Read: https://thehackernews.com/2022/04/multiple-hacker-groups-capitalizing-on.html
Read: https://thehackernews.com/2022/04/multiple-hacker-groups-capitalizing-on.html
Researchers uncover a new Android spyware with a C2 server linked to the Turla hackers, masquerading as a "process manager" service to stealthily siphon off sensitive information stored on infected devices.
Details: https://thehackernews.com/2022/04/researchers-uncover-new-android-spyware.html
Details: https://thehackernews.com/2022/04/researchers-uncover-new-android-spyware.html
U.S. cybersecurity agency CISA has included the recently disclosed Remote Code Execution (RCE) vulnerability affecting Spring Framework in its Known Exploited Vulnerabilities Catalog based on "evidence of active exploitation."
Details: https://thehackernews.com/2022/04/cisa-warns-of-active-exploitation-of.html
Details: https://thehackernews.com/2022/04/cisa-warns-of-active-exploitation-of.html
👍1
Email marketing service Mailchimp was hacked and customers' accounts were accessed to carry out phishing attacks, including users of cryptocurrency wallet company Trezor.
Read details: https://thehackernews.com/2022/04/hackers-breach-mailchimp-email.html
Read details: https://thehackernews.com/2022/04/hackers-breach-mailchimp-email.html
Researchers have linked widespread cyberespionage attacks to a Chinese hacker group called Cicada that has been attacking organizations around the world, including government, legal, religious, and NGOs.
Details: https://thehackernews.com/2022/04/researchers-trace-widespread-espionage.html
Details: https://thehackernews.com/2022/04/researchers-trace-widespread-espionage.html
⚡German authorities shut down Russian Hydra DarkNet market and seized $25 million in Bitcoin.
Read: https://thehackernews.com/2022/04/germany-shuts-down-russian-hydra.html
According to reports, there were around 17 million customers and over 19,000 seller accounts registered on the marketplace.
Read: https://thehackernews.com/2022/04/germany-shuts-down-russian-hydra.html
According to reports, there were around 17 million customers and over 19,000 seller accounts registered on the marketplace.
Cybercrime group FIN7 has started to collaborate with several ransomware groups and has diversified its initial access vectors to compromise the software supply chain and use stolen credentials.
Read: https://thehackernews.com/2022/04/fin7-hackers-leveraging-password-reuse.html
Read: https://thehackernews.com/2022/04/fin7-hackers-leveraging-password-reuse.html
The U.S. Treasury Department imposed sanctions on Hydra on Tuesday, the same day German law enforcement authorities disrupted the world's largest dark web marketplace as part of a coordinated operation in cooperation with U.S. authorities.
Read: https://thehackernews.com/2022/04/us-treasury-department-sanctions-russia.html
Read: https://thehackernews.com/2022/04/us-treasury-department-sanctions-russia.html
👍1
Block admits a data breach involving a former employee who accessed Cash App U.S. customers' information.
Read details: https://thehackernews.com/2022/04/block-admits-data-breach-involving-cash.html
Read details: https://thehackernews.com/2022/04/block-admits-data-breach-involving-cash.html