New GobRAT Remote Access Trojan Targeting Linux Routers in Japan

30/05/2023 0 Comments 0 tags

Linux routers in Japan are the target of a new Golang remote access trojan (RAT) called GobRAT. “Initially, the attacker targets a router whose WEBUI is open to the public, executes

3 Challenges in Building a Continuous Threat Exposure Management (CTEM) Program and How to Beat Them

30/05/2023 0 Comments 0 tags

If you’re a cybersecurity professional, you’re likely familiar with the sea of acronyms our industry is obsessed with. From CNAPP, to CWPP, to CIEM and all of the myriad others,

AceCryptor: Cybercriminals’ Powerful Weapon, Detected in 240K+ Attacks

30/05/2023 0 Comments 0 tags

A crypter (alternatively spelled cryptor) malware dubbed AceCryptor has been used to pack numerous strains of malware since 2016. Slovak cybersecurity firm ESET said it identified over 240,000 detections of the crypter in its

New BrutePrint Attack Lets Attackers Unlock Smartphones with Fingerprint Brute-Force

30/05/2023 0 Comments 0 tags

Researchers have discovered an inexpensive attack technique that could be leveraged to brute-force fingerprints on smartphones to bypass user authentication and seize control of the devices. The approach, dubbed BrutePrint, bypasses

Sneaky DogeRAT Trojan Poses as Popular Apps, Targets Indian Android Users

30/05/2023 0 Comments 0 tags

A new open source remote access trojan (RAT) called DogeRAT targets Android users primarily located in India as part of a sophisticated malware campaign. The malware is distributed via social media and

Implementing Risk-Based Vulnerability Discovery and Remediation

30/05/2023 0 Comments 0 tags

In this day and age, vulnerabilities in software and systems pose a considerable danger to businesses, which is why it is essential to have an efficient vulnerability management program in

CAPTCHA-Breaking Services with Human Solvers Helping Cybercriminals Defeat Security

30/05/2023 0 Comments 0 tags

Cybersecurity researchers are warning about CAPTCHA-breaking services that are being offered for sale to bypass systems designed to distinguish legitimate users from bot traffic. “Because cybercriminals are keen on breaking

Hackers Win $105,000 for Reporting Critical Security Flaws in Sonos One Speakers

30/05/2023 0 Comments 0 tags

Multiple security flaws uncovered in Sonos One wireless speakers could be potentially exploited to achieve information disclosure and remote code execution, the Zero Day Initiative (ZDI) said in a report published last

Critical OAuth Vulnerability in Expo Framework Allows Account Hijacking

27/05/2023 0 Comments 0 tags

A critical security vulnerability has been disclosed in the Open Authorization (OAuth) implementation of the application development framework Expo.io. The shortcoming, assigned the CVE identifier CVE-2023-28131, has a severity rating of

New Stealthy Bandit Stealer Targeting Web Browsers and Cryptocurrency Wallets

27/05/2023 0 Comments 0 tags

A new stealthy information stealer malware called Bandit Stealer has caught the attention of cybersecurity researchers for its ability to target numerous web browsers and cryptocurrency wallets.  “It has the