North Korea’s Kimsuky Group Mimics Key Figures in Targeted Cyber Attacks

02/06/2023 0 Comments 0 tags

U.S. and South Korean intelligence agencies have issued a new alert warning of North Korean cyber actors’ use of social engineering tactics to strike think tanks, academia, and news media

MOVEit Transfer Under Attack: Zero-Day Vulnerability Actively Being Exploited

02/06/2023 0 Comments 0 tags

A critical flaw in Progress Software’s in MOVEit Transfer managed file transfer application has come under widespread exploitation in the wild to take over vulnerable systems. The shortcoming, which is

Evasive QBot Malware Leverages Short-lived Residential IPs for Dynamic Attacks

02/06/2023 0 Comments 0 tags

An analysis of the “evasive and tenacious” malware known as QBot has revealed that 25% of its command-and-control (C2) servers are merely active for a single day. What’s more, 50%

New Zero-Click Hack Targets iOS Users with Stealthy Root-Privilege Malware

02/06/2023 0 Comments 0 tags

A previously unknown advanced persistent threat (APT) is targeting iOS devices as part of a sophisticated and long-running mobile campaign dubbed Operation Triangulation that began in 2019. “The targets are infected using

Unmasking XE Group: Experts Reveal Identity of Suspected Cybercrime Kingpin

02/06/2023 0 Comments 0 tags

Cybersecurity researchers have unmasked the identity of one of the individuals who is believed to be associated with the e-crime actor known as XE Group. According to Menlo Security, which pieced together

N. Korean ScarCruft Hackers Exploit LNK Files to Spread RokRAT

01/06/2023 0 Comments 0 tags

Cybersecurity researchers have offered a closer look at the RokRAT remote access trojan that’s employed by the North Korean state-sponsored actor known as ScarCruft. “RokRAT is a sophisticated remote access trojan

Active Mirai Botnet Variant Exploiting Zyxel Devices for DDoS Attacks

01/06/2023 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a recently patched critical security flaw in Zyxel gear to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. Tracked

Urgent WordPress Update Fixes Critical Flaw in Jetpack Plugin on Million of Sites

01/06/2023 0 Comments 0 tags

WordPress has issued an automatic update to address a critical flaw in the Jetpack plugin that’s installed on over five million sites. The vulnerability, which was unearthed during an internal security audit,

Alert: Hackers Exploit Barracuda Email Security Gateway 0-Day Flaw for 7 Months

01/06/2023 0 Comments 0 tags

Enterprise security firm Barracuda on Tuesday disclosed that a recently patched zero-day flaw in its Email Security Gateway (ESG) appliances had been abused by threat actors since October 2022 to

Cybercriminals Targeting Apache NiFi Instances for Cryptocurrency Mining

01/06/2023 0 Comments 0 tags

A financially motivated threat actor is actively scouring the internet for unprotected Apache NiFi instances to covertly install a cryptocurrency miner and facilitate lateral movement. The findings come from the SANS Internet