From Deepfakes to Malware: AI’s Expanding Role in Cyber Attacks

19/03/2024 0 Comments 0 tags

Large language models (LLMs) powering artificial intelligence (AI) tools today could be exploited to develop self-augmenting malware capable of bypassing YARA rules. “Generative AI can be used to evade string-based

Suspected Russian Data-Wiping ‘AcidPour’ Malware Targeting Linux x86 Devices

19/03/2024 0 Comments 0 tags

A new variant of a data wiping malware called AcidRain has been detected in the wild that’s specifically designed for targeting Linux x86 devices. The malware, dubbed AcidPour, is compiled

Hackers Exploiting Popular Document Publishing Sites for Phishing Attacks

19/03/2024 0 Comments 0 tags

Threat actors are leveraging digital document publishing (DDP) sites hosted on platforms like FlipSnack, Issuu, Marq, Publuu, RelayTo, and Simplebooklet for carrying out phishing, credential harvesting, and session token theft,

Crafting and Communicating Your Cybersecurity Strategy for Board Buy-In

19/03/2024 0 Comments 0 tags

In an era where digital transformation drives business across sectors, cybersecurity has transcended its traditional operational role to become a cornerstone of corporate strategy and risk management. This evolution demands

New Phishing Attack Uses Clever Microsoft Office Trick to Deploy NetSupport RAT

19/03/2024 0 Comments 0 tags

A new phishing campaign is targeting U.S. organizations with the intent to deploy a remote access trojan called NetSupport RAT. Israeli cybersecurity company Perception Point is tracking the activity under

E-Root Marketplace Admin Sentenced to 42 Months for Selling 350K Stolen Credentials

19/03/2024 0 Comments 0 tags

A 31-year-old Moldovan national has been sentenced to 42 months in prison in the U.S. for operating an illicit marketplace called E-Root Marketplace that offered for sale hundreds of thousands

New DEEP#GOSU Malware Campaign Targets Windows Users with Advanced Tactics

18/03/2024 0 Comments 0 tags

A new elaborate attack campaign has been observed employing PowerShell and VBScript malware to infect Windows systems and harvest sensitive information. Cybersecurity company Securonix, which dubbed the campaign DEEP#GOSU, said

Hackers Using Sneaky HTML Smuggling to Deliver Malware via Fake Google Sites

18/03/2024 0 Comments 0 tags

Cybersecurity researchers have discovered a new malware campaign that leverages bogus Google Sites pages and HTML smuggling to distribute a commercial malware called AZORult in order to facilitate information theft. “It uses

Fortra Patches Critical RCE Vulnerability in FileCatalyst Transfer Tool

18/03/2024 0 Comments 0 tags

Fortra has released details of a now-patched critical security flaw impacting its FileCatalyst file transfer solution that could allow unauthenticated attackers to gain remote code execution on susceptible servers. Tracked as CVE-2024-25153,

WordPress Admins Urged to Remove miniOrange Plugins Due to Critical Flaw

18/03/2024 0 Comments 0 tags

WordPress users of miniOrange’s Malware Scanner and Web Application Firewall plugins are being urged to delete them from their websites following the discovery of a critical security flaw. The flaw,