Thousands of Unpatched Openfire XMPP Servers Still Exposed to High-Severity Flaw

24/08/2023 0 Comments 0 tags

Thousands of Openfire XMPP servers are unpatched against a recently disclosed high-severity flaw and are susceptible to a new exploit, according to a new report from VulnCheck. Tracked as CVE-2023-32315 (CVSS score: 7.5), the vulnerability relates

WinRAR Security Flaw Exploited in Zero-Day Attacks to Target Traders

24/08/2023 0 Comments 0 tags

A recently patched security flaw in the popular WinRAR archiving software has been exploited as a zero-day since April 2023, new findings from Group-IB reveal. The vulnerability, cataloged as CVE-2023-38831, allows

New “Whiffy Recon” Malware Triangulates Infected Device Location via Wi-Fi Every Minute

24/08/2023 0 Comments 0 tags

The SmokeLoader malware is being used to deliver a new Wi-Fi scanning malware strain called Whiffy Recon on compromised Windows machines. “The new malware strain has only one operation. Every 60 seconds

The Hidden Dangers of Public Wi-Fi

24/08/2023 0 Comments 0 tags

Public Wi-Fi, which has long since become the norm, poses threats to not only individual users but also businesses. With the rise of remote work, people can now work from

New Telegram Bot “Telekopye” Powering Large-scale Phishing Scams from Russia

24/08/2023 0 Comments 0 tags

A new financially motivated operation is leveraging a malicious Telegram bot to help threat actors scam their victims. Dubbed Telekopye, a portmanteau of Telegram and kopye (meaning “spear” in Russian), the

Lazarus Group Exploits Critical Zoho ManageEngine Flaw to Deploy Stealthy QuiteRAT Malware

24/08/2023 0 Comments 0 tags

The North Korea-linked threat actor known as Lazarus Group has been observed exploiting a now-patched critical security flaw impacting Zoho ManageEngine ServiceDesk Plus to distribute a remote access trojan called

Over a Dozen Malicious npm Packages Target Roblox Game Developers

23/08/2023 0 Comments 0 tags

More than a dozen malicious packages have been discovered on the npm package repository since the start of August 2023 with capabilities to deploy an open-source information stealer called Luna Token

Spacecolon Toolset Fuels Global Surge in Scarab Ransomware Attacks

23/08/2023 0 Comments 0 tags

A malicious toolset dubbed Spacecolon is being deployed as part of an ongoing campaign to spread variants of the Scarab ransomware across victim organizations globally. “It probably finds its way into victim

Syrian Threat Actor EVLF Unmasked as Creator of CypherRAT and CraxsRAT Android Malware

23/08/2023 0 Comments 0 tags

A Syrian threat actor named EVLF has been outed as the creator of malware families CypherRAT and CraxsRAT. “These RATs are designed to allow an attacker to remotely perform real-time actions and

Agile Approach to Mass Cloud Credential Harvesting and Crypto Mining Sprints Ahead

23/08/2023 0 Comments 0 tags

Developers are not the only people who have adopted the agile methodology for their development processes. From 2023-06-15 to 2023-07-11, Permiso Security’s p0 Labs team identified and tracked an attacker