Category: Uncategorized
-

Malicious ‘SNS Sender’ Script Abuses AWS for Bulk Smishing Attacks [email protected] (The Hacker News)
A malicious Python script known as SNS Sender is being advertised as a way for threat actors to send bulk smishing messages by abusing Amazon Web Services (AWS) Simple Notification Service (SNS). The SMS phishing messages are designed to propagate malicious links that are designed to capture victims’ personally identifiable information (PII) and payment card details, SentinelOne Read…
-
US Offers $10 Million for Information on BlackCat Ransomware Leaders Ionut Arghire
The US announces a $10 million reward for information on key members of the Alphv/BlackCat ransomware group. The post US Offers $10 Million for Information on BlackCat Ransomware Leaders appeared first on SecurityWeek. Read More
-
Ukrainian Pleads Guilty in US to Key Role in Zeus, IcedID Malware Operations Eduard Kovacs
Ukrainian national Vyacheslav Igorevich Penchukov has pleaded guilty to holding key roles in the Zeus and IcedID malware operations. The post Ukrainian Pleads Guilty in US to Key Role in Zeus, IcedID Malware Operations appeared first on SecurityWeek. Read More
-

U.S. State Government Network Breached via Former Employee’s Account [email protected] (The Hacker News)
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that an unnamed state government organization’s network environment was compromised via an administrator account belonging to a former employee. “This allowed the threat actor to successfully authenticate to an internal virtual private network (VPN) access point,” the agency said in a joint advisory publishedRead More
-

U.S. Government Disrupts Russian-Linked Botnet Engaged in Cyber Espionage [email protected] (The Hacker News)
The U.S. government on Thursday said it disrupted a botnet comprising hundreds of small office and home office (SOHO) routers in the country that was put to use by the Russia-linked APT28 actor to conceal its malicious activities. “These crimes included vast spear-phishing and similar credential harvesting campaigns against targets of intelligence interest to the…
-
FBI Dismantles Ubiquiti Router Botnet Controlled by Russian Cyberspies Ryan Naraine
The US government says it has neutralized a network of hundreds of Ubiquiti Edge OS routers under the control of the Russia’s APT28 hackers. The post FBI Dismantles Ubiquiti Router Botnet Controlled by Russian Cyberspies appeared first on SecurityWeek. Read More
-
Cyberattacks on Hospitals Are Likely to Increase, Putting Lives at Risk, Experts Warn Associated Press
Hospitals around the country are at risk for attacks like the one that is crippling operations at a children’s hospital, and some say the government is doing too little prevent such breaches. The post Cyberattacks on Hospitals Are Likely to Increase, Putting Lives at Risk, Experts Warn appeared first on SecurityWeek. Read More
-

Russian Turla Hackers Target Polish NGOs with New TinyTurla-NG Backdoor [email protected] (The Hacker News)
The Russia-linked threat actor known as Turla has been observed using a new backdoor called TinyTurla-NG as part of a three-month-long campaign targeting Polish non-governmental organizations in December 2023. “TinyTurla-NG, just like TinyTurla, is a small ‘last chance’ backdoor that is left behind to be used when all other unauthorized access/backdoor mechanisms have failed or beenRead More
-
Cyberattack Disrupts Production at Varta Battery Factories Eduard Kovacs
Production at five plants of German battery maker Varta has been disrupted by a cyberattack, possibly a ransomware attack. The post Cyberattack Disrupts Production at Varta Battery Factories appeared first on SecurityWeek. Read More
-

Ivanti Pulse Secure Found Using 11-Year-Old Linux Version and Outdated Libraries [email protected] (The Hacker News)
A reverse engineering of the firmware running on Ivanti Pulse Secure appliances has revealed numerous weaknesses, once again underscoring the challenge of securing software supply chains. Eclypsiusm, which acquired firmware version 9.1.18.2-24467.1 as part of the process, said the base operating system used by the Utah-based software company for the device is CentOS 6.4. “Pulse…
