MMRat Android Trojan Executes Remote Financial Fraud Through Accessibility Feature

31/08/2023 0 Comments 0 tags

A previously undocumented Android banking trojan dubbed MMRat has been observed targeting mobile users in Southeast Asia since late June 2023 to remotely commandeer the devices and perform financial fraud. “The malware,

Malicious npm Packages Aim to Target Developers for Source Code Theft

30/08/2023 0 Comments 0 tags

An unknown threat actor is leveraging malicious npm packages to target developers with an aim to steal source code and configuration files from victim machines, a sign of how threats

Alert: Juniper Firewalls, Openfire, and Apache RocketMQ Under Attack from New Exploits

30/08/2023 0 Comments 0 tags

Recently disclosed security flaws impacting Juniper firewalls, Openfire, and Apache RocketMQ servers have come under active exploitation in the wild, according to multiple reports. The Shadowserver Foundation said that it’s “seeing exploitation

Critical Vulnerability Alert: VMware Aria Operations Networks at Risk from Remote Attacks

30/08/2023 0 Comments 0 tags

VMware has released software updates to correct two security vulnerabilities in Aria Operations for Networks that could be potentially exploited to bypass authentication and gain remote code execution. The most

FBI Dismantles QakBot Malware, Frees 700,000 Computers, Seizes $8.6 Million

30/08/2023 0 Comments 0 tags

A coordinated law enforcement effort codenamed Operation Duck Hunt has felled QakBot, a notorious Windows malware family that’s estimated to have compromised over 700,000 computers globally and facilitated financial fraud as well as

Chinese Hacking Group Exploits Barracuda Zero-Day to Target Government, Military, and Telecom

30/08/2023 0 Comments 0 tags

A suspected Chinese-nexus hacking group exploited a recently disclosed zero-day flaw in Barracuda Networks Email Security Gateway (ESG) appliances to breach government, military, defense and aerospace, high-tech industry, and telecom sectors as

DarkGate Malware Activity Spikes as Developer Rents Out Malware to Affiliates

30/08/2023 0 Comments 0 tags

A new malspam campaign has been observed deploying an off-the-shelf malware called DarkGate. “The current spike in DarkGate malware activity is plausible given the fact that the developer of the

Survey Provides Takeaways for Security Pros to Operationalize their Remediation Life Cycle

30/08/2023 0 Comments 0 tags

Ask any security professional and they’ll tell you that remediating risks from various siloed security scanning tools requires a tedious and labor-intensive series of steps focused on deduplication, prioritization, and

Citrix NetScaler Alert: Ransomware Hackers Exploiting Critical Vulnerability

30/08/2023 0 Comments 0 tags

Unpatched Citrix NetScaler systems exposed to the internet are being targeted by unknown threat actors in what’s suspected to be a ransomware attack. Cybersecurity company Sophos is tracking the activity cluster under

Phishing-as-a-Service Gets Smarter: Microsoft Sounds Alarm on AiTM Attacks

30/08/2023 0 Comments 0 tags

Microsoft is warning of an increase in adversary-in-the-middle (AiTM) phishing techniques, which are being propagated as part of the phishing-as-a-service (PhaaS) cybercrime model. In addition to an uptick in AiTM-capable