KamiKakaBot Malware Used in Latest Dark Pink APT Attacks on Southeast Asian Targets

13/03/2023 0 Comments 0 tags

The Dark Pink advanced persistent threat (APT) actor has been linked to a fresh set of attacks targeting government and military entities in Southeast Asian countries with a malware called KamiKakaBot. Dark

BATLOADER Malware Uses Google Ads to Deliver Vidar Stealer and Ursnif Payloads

11/03/2023 0 Comments 0 tags

The malware downloader known as BATLOADER has been observed abusing Google Ads to deliver secondary payloads like Vidar Stealer and Ursnif. According to cybersecurity company eSentire, malicious ads are used to spoof a

When Partial Protection is Zero Protection: The MFA Blind Spots No One Talks About

10/03/2023 0 Comments 0 tags

Multi-factor Authentication (MFA) has long ago become a standard security practice. With a wide consensus on its ability to fend off more than 99% percent of account takeover attacks, it’s

New Version of Prometei Botnet Infects Over 10,000 Systems Worldwide

10/03/2023 0 Comments 0 tags

An updated version of a botnet malware called Prometei has infected more than 10,000 systems worldwide since November 2022. The infections are both geographically indiscriminate and opportunistic, with a majority of the

China-linked Hackers Targeting Unpatched SonicWall SMA Devices with Malware

10/03/2023 0 Comments 0 tags

A suspecting China-linked hacking campaign has been observed targeting unpatched SonicWall Secure Mobile Access (SMA) 100 appliances to drop malware and establish long-term persistence. “The malware has functionality to steal user credentials,

International Law Enforcement Takes Down Infamous NetWire Cross-Platform RAT

10/03/2023 0 Comments 0 tags

A coordinated international law enforcement exercise has taken down the online infrastructure associated with a cross-platform remote access trojan (RAT) known as NetWire. Coinciding with the seizure of the sales

Xenomorph Android Banking Trojan Returns with a New and More Powerful Variant

10/03/2023 0 Comments 0 tags

A new variant of the Android banking trojan named Xenomorph has surfaced in the wild, the latest findings from ThreatFabric reveal. Named “Xenomorph 3rd generation” by the Hadoken Security Group,

North Korean UNC2970 Hackers Expands Operations with New Malware Families

10/03/2023 0 Comments 0 tags

A North Korean espionage group tracked as UNC2970 has been observed employing previously undocumented malware families as part of a spear-phishing campaign targeting U.S. and European media and technology organizations since June

Hackers Exploiting Remote Desktop Software Flaws to Deploy PlugX Malware

09/03/2023 0 Comments 0 tags

Security vulnerabilities in remote desktop programs such as Sunlogin and AweSun are being exploited by threat actors to deploy the PlugX malware. AhnLab Security Emergency Response Center (ASEC), in a new

IceFire Ransomware Exploits IBM Aspera Faspex to Attack Linux-Powered Enterprise Networks

09/03/2023 0 Comments 0 tags

A previously known Windows-based ransomware strain known as IceFire has expanded its focus to target Linux enterprise networks belonging to several media and entertainment sector organizations across the world. The