British LAPSUS$ Teen Members Sentenced for High-Profile Attacks

24/12/2023 0 Comments 0 tags

Two British teens part of the LAPSUS$ cyber crime and extortion gang have been sentenced for their roles in orchestrating a string of high-profile attacks against a number of companies.

Rogue WordPress Plugin Exposes E-Commerce Sites to Credit Card Theft

22/12/2023 0 Comments 0 tags

Threat hunters have discovered a rogue WordPress plugin that’s capable of creating bogus administrator users and injecting malicious JavaScript code to steal credit card information. The skimming activity is part

Operation RusticWeb: Rust-Based Malware Targets Indian Government Entities

22/12/2023 0 Comments 0 tags

Indian government entities and the defense sector have been targeted by a phishing campaign that’s engineered to drop Rust-based malware for intelligence gathering. The activity, first detected in October 2023,

Decoy Microsoft Word Documents Used to Deliver Nim-Based Malware

22/12/2023 0 Comments 0 tags

A new phishing campaign is leveraging decoy Microsoft Word documents as bait to deliver a backdoor written in the Nim programming language. “Malware written in uncommon programming languages puts the security

UAC-0099 Using WinRAR Exploit to Target Ukrainian Firms with LONEPAGE Malware

22/12/2023 0 Comments 0 tags

The threat actor known as UAC-0099 has been linked to continued attacks aimed at Ukraine, some of which leverage a high-severity flaw in the WinRAR software to deliver a malware strain called

Microsoft Warns of New ‘FalseFont’ Backdoor Targeting the Defense Sector

22/12/2023 0 Comments 0 tags

Organizations in the Defense Industrial Base (DIB) sector are in the crosshairs of an Iranian threat actor as part of a campaign designed to deliver a never-before-seen backdoor called FalseFont.

Experts Detail Multi-Million Dollar Licensing Model of Predator Spyware

21/12/2023 0 Comments 0 tags

A new analysis of the sophisticated commercial spyware called Predator has revealed that its ability to persist between reboots is offered as an “add-on feature” and that it depends on

Chameleon Android Banking Trojan Variant Bypasses Biometric Authentication

21/12/2023 0 Comments 0 tags

Cybersecurity researchers have discovered an updated version of an Android banking malware called Chameleon that has expanded its targeting to include users in the U.K. and Italy. “Representing a restructured

New JavaScript Malware Targeted 50,000+ Users at Dozens of Banks Worldwide

21/12/2023 0 Comments 0 tags

A new piece of JavaScript malware has been observed attempting to steal users’ online banking account credentials as part of a campaign that has targeted more than 40 financial institutions

Cost of a Data Breach Report 2023: Insights, Mitigators and Best Practices

21/12/2023 0 Comments 0 tags

John Hanley of IBM Security shares 4 key findings from the highly acclaimed annual Cost of a Data Breach Report 2023 What is the IBM Cost of a Data Breach