Advertisement
Top

Category: Hacking


Hacking, Security

Ransomware incidents are on the rise as latest data reveals alarming trend

October 25, 2023

Via: TechSpot

September saw a record number of ransomware operations, as indicated in a recently released report by NCC Group. The company’s latest “monthly cyber threat intelligence report” focuses on emerging developments in the threat landscape, particularly in the realm of ransomware […]


Hacking, Security

Backdoor Implant on Hacked Cisco Devices Modified to Evade Detection

October 24, 2023

Via: The Hacker News

The backdoor implanted on Cisco devices by exploiting a pair of zero-day flaws in IOS XE software has been modified by the threat actor so as to escape visibility via previous fingerprinting methods. “Investigated network traffic to a compromised device […]


Hacking, Security

Pro-Russian Hackers Exploiting Recent WinRAR Vulnerability in New Campaign

October 16, 2023

Via: The Hacker News

Pro-Russian hacking groups have exploited a recently disclosed security vulnerability in the WinRAR archiving utility as part of a phishing campaign designed to harvest credentials from compromised systems. “The attack involves the use of malicious archive files that exploit the […]


Hacking, Security

Researchers Uncover Malware Posing as WordPress Caching Plugin

October 12, 2023

Via: The Hacker News

Cybersecurity researchers have shed light on a new sophisticated strain of malware that masquerades a WordPress plugin to stealthily create administrator accounts and remotely control a compromised site. “Complete with a professional looking opening comment implying it is a caching […]


Hacking, Security

Cybercriminals Using EvilProxy Phishing Kit to Target Senior Executives in U.S. Firms

October 9, 2023

Via: The Hacker News

Senior executives working in U.S.-based organizations are being targeted by a new phishing campaign that leverages a popular adversary-in-the-middle (AiTM) phishing toolkit named EvilProxy to conduct credential harvesting and account takeover attacks. Menlo Security said the activity started in July […]


Hacking, Security

Microsoft Warns of Cyber Attacks Attempting to Breach Cloud via SQL Server Instance

October 4, 2023

Via: The Hacker News

Microsoft has detailed a new campaign in which attackers unsuccessfully attempted to move laterally to a cloud environment through an SQL Server instance. “The attackers initially exploited a SQL injection vulnerability in an application within the target’s environment,” security researchers […]


Hacking, Security

New ZenRAT Malware Targeting Windows Users via Fake Password Manager Software

September 27, 2023

Via: TheHackersNews

A new malware strain called ZenRAT has emerged in the wild that’s distributed via bogus installation packages of the Bitwarden password manager. “The malware is specifically targeting Windows users and will redirect people using other hosts to a benign web […]


Hacking, Security

Discord.io suffers massive data breach, announces closure

August 15, 2023

Via: Mashable

Discord.io, a service that allowed users to create custom links for their Discord channels, is closing down following a large data breach. A hacker stole the data of 760,000 users, per TechRadar, and has posted a sample on Breached Forums […]


Hacking, Security

AI cyberattack could figure out your password from keyboard acoustics

August 8, 2023

Via: Mashable

Hacking passwords by recording the sound of your keystrokes is nothing new, but researchers using AI have been able to do this with much more accuracy. Computer scientists from Durham University, University of Surrey, and Royal Holloway University of London, […]


Hacking, Security

Malicious npm Packages Found Exfiltrating Sensitive Data from Developers

August 4, 2023

Via: The Hacker News

Cybersecurity researchers have discovered a new bunch of malicious packages on the npm package registry that are designed to exfiltrate sensitive developer information. Software supply chain firm Phylum, which first identified the “test” packages on July 31, 2023, said they […]


Hacking, Security

Phishers Exploit Salesforce’s Email Services Zero-Day in Targeted Facebook Campaign

August 2, 2023

Via: The Hacker News

A sophisticated Facebook phishing campaign has been observed exploiting a zero-day flaw in Salesforce’s email services, allowing threat actors to craft targeted phishing messages using the company’s domain and infrastructure. “Those phishing campaigns cleverly evade conventional detection methods by chaining […]


Hacking, Security

New CPU security loophole: Analysis of energy consumption allows data theft

August 2, 2023

Via: Tech Xplore

Researchers at TU Graz and the Helmholtz Center for Information Security have discovered a novel security gap in all common main processors (CPUs) of computers that can hardly be mitigated. CPUs are designed to run multiple applications simultaneously. This is […]


Hacking, Security

Fruity Trojan Uses Deceptive Software Installers to Spread Remcos RAT

July 31, 2023

Via: The Hacker News

Threat actors are creating fake websites hosting trojanized software installers to trick unsuspecting users into downloading a downloader malware called Fruity with the goal of installing remote trojans tools like Remcos RAT. “Among the software in question are various instruments […]


Hacking, Security

How to Manage Your Attack Surface?

July 19, 2023

Via: The Hacker News

Attack surfaces are growing faster than security teams can keep up. To stay ahead, you need to know what’s exposed and where attackers are most likely to strike. With cloud migration dramatically increasing the number of internal and external targets, […]


Hacking, Security

Hackers are exploiting Windows loophole to load malicious drivers

July 13, 2023

Via: TechSpot

If you practice good digital hygiene, you’re likely installing Windows updates soon after their release date, especially when they’re security-focused. However, hackers are constantly poking and prodding the security of Microsoft’s operating system and devising new ways to bypass any […]


Hacking, Security

Hackers Exploit Windows Policy Loophole to Forge Kernel-Mode Driver Signatures

July 11, 2023

Via: The Hacker News

A Microsoft Windows policy loophole has been observed being exploited primarily by native Chinese-speaking threat actors to forge signatures on kernel-mode drivers. “Actors are leveraging multiple open-source tools that alter the signing date of kernel mode drivers to load malicious […]


Hacking, Security

Chinese Hackers Use HTML Smuggling to Infiltrate European Ministries with PlugX

July 3, 2023

Via: The Hacker News

A Chinese nation-state group has been observed targeting Foreign Affairs ministries and embassies in Europe using HTML smuggling techniques to deliver the PlugX remote access trojan on compromised systems. Cybersecurity firm Check Point said the activity, dubbed SmugX, has been […]


Hacking, Security

Reddit hackers demand $4.5 million ransom and API pricing changes

June 19, 2023

Via: The Verge

A ransomware group is claiming responsibility for a hack on Reddit’s systems earlier this year — and demanding not just money but policy changes. BlackCat, a ransomware group, says it was behind the February phishing attack on Reddit, as previously […]


Hacking, Security

Ransomware Hackers and Scammers Utilizing Cloud Mining to Launder Cryptocurrency

June 15, 2023

Via: The Hacker News

Ransomware actors and cryptocurrency scammers have joined nation-state actors in abusing cloud mining services to launder digital assets, new findings reveal. “Cryptocurrency mining is a crucial part of our industry, but it also holds special appeal to bad actors, as […]


Hacking, Security

Malicious hackers are weaponizing generative AI

June 13, 2023

Via: InfoWorld

Although I’m swearing off studies as blog fodder, it did come to my attention that Vulcan Cyber’s Voyager18 research team recently issued an advisory validating that generative AI, such as ChatGPT, would be turned into a weapon quickly, ready to […]