Category: Uncategorized
-

HijackLoader Evolves: Researchers Decode the Latest Evasion Methods [email protected] (The Hacker News)
The threat actors behind a loader malware called HijackLoader have added new techniques for defense evasion, as the malware continues to be increasingly used by other threat actors to deliver additional payloads and tooling. “The malware developer used a standard process hollowing technique coupled with an additional trigger that was activated by the parent process writing to…
-

Google Starts Blocking Sideloading of Potentially Dangerous Android Apps in Singapore [email protected] (The Hacker News)
Google has unveiled a new pilot program in Singapore that aims to prevent users from sideloading certain apps that abuse Android app permissions to read one-time passwords and gather sensitive data. “This enhanced fraud protection will analyze and automatically block the installation of apps that may use sensitive runtime permissions frequently abused for financial fraud…
-
Were 3 Million Toothbrushes Really Used for a DDoS Attack? Eduard Kovacs
Three million electric toothbrushes were reportedly used for disruptive DDoS attacks, but cybersecurity experts questioned the claims. The post Were 3 Million Toothbrushes Really Used for a DDoS Attack? appeared first on SecurityWeek. Read More
-

Kimsuky’s New Golang Stealer ‘Troll’ and ‘GoBear’ Backdoor Target South Korea [email protected] (The Hacker News)
The North Korea-linked nation-state actor known as Kimsuky is suspected of using a previously undocumented Golang-based information stealer called Troll Stealer. The malware steals “SSH, FileZilla, C drive files/directories, browsers, system information, [and] screen captures” from infected systems, South Korean cybersecurity company S2W said in a new technical report. TrollRead More
-

Critical Patches Released for New Flaws in Cisco, Fortinet, VMware Products [email protected] (The Hacker News)
Cisco, Fortinet, and VMware have released security fixes for multiple security vulnerabilities, including critical weaknesses that could be exploited to perform arbitrary actions on affected devices. The first set from Cisco consists of three flaws – CVE-2024-20252 and CVE-2024-20254 (CVSS score: 9.6) and CVE-2024-20255 (CVSS score: 8.2) – impacting Cisco Expressway Series that could allow…
-
Biden Administration Names a Director of the New AI Safety Institute Associated Press
The Biden administration named Elizabeth Kelly as the director of the newly established safety institute for artificial intelligence. The post Biden Administration Names a Director of the New AI Safety Institute appeared first on SecurityWeek. Read More
-
CISA: China’s Volt Typhoon Hackers Planning Critical Infrastructure Disruption Ryan Naraine
New CISA alert includes technical mitigations to harden attack surfaces and instructions to hunt for the Chinese government-backed hackers. The post CISA: China’s Volt Typhoon Hackers Planning Critical Infrastructure Disruption appeared first on SecurityWeek. Read More
-

After FBI Takedown, KV-Botnet Operators Shift Tactics in Attempt to Bounce Back [email protected] (The Hacker News)
The threat actors behind the KV-botnet made “behavioral changes” to the malicious network as U.S. law enforcement began issuing commands to neutralize the activity. KV-botnet is the name given to a network of compromised small office and home office (SOHO) routers and firewall devices across the world, with one specific cluster acting as a covert data transfer…
-
Chainalysis: 2023 a ‘watershed’ year for ransomware
Post ContentRead More
-
Most Linux Systems Exposed to Complete Compromise via Shim Vulnerability Ionut Arghire
A critical remote code execution vulnerability in Shim could allow attackers to take over vulnerable Linux systems. The post Most Linux Systems Exposed to Complete Compromise via Shim Vulnerability appeared first on SecurityWeek. Read More
