Category: Uncategorized
-

Kinsing Hackers Exploit Apache ActiveMQ Vulnerability to Deploy Linux Rootkits [email protected] (The Hacker News)
The Kinsing threat actors are actively exploiting a critical security flaw in vulnerable Apache ActiveMQ servers to infect Linux systems with cryptocurrency miners and rootkits. “Once Kinsing infects a system, it deploys a cryptocurrency mining script that exploits the host’s resources to mine cryptocurrencies like Bitcoin, resulting in significant damage to the infrastructure and a negativeRead More
-

Malicious Apps Disguised as Banks and Government Agencies Targeting Indian Android Users [email protected] (The Hacker News)
Android smartphone users in India are the target of a new malware campaign that employs social engineering lures to install fraudulent apps that are capable of harvesting sensitive data. “Using social media platforms like WhatsApp and Telegram, attackers are sending messages designed to lure users into installing a malicious app on their mobile device by…
-

Mustang Panda Hackers Targets Philippines Government Amid South China Sea Tensions [email protected] (The Hacker News)
The China-linked Mustang Panda actor has been linked to a cyber attack targeting a Philippines government entity amid rising tensions between the two countries over the disputed South China Sea. Palo Alto Networks Unit 42 attributed the adversarial collective to three campaigns in August 2023, primarily singling out organizations in the South Pacific. “The campaigns leveraged legitimate…
-

NetSupport RAT Infections on the Rise – Targeting Government and Business Sectors [email protected] (The Hacker News)
Threat actors are targeting the education, government and business services sectors with a remote access trojan called NetSupport RAT. “The delivery mechanisms for the NetSupport RAT encompass fraudulent updates, drive-by downloads, utilization of malware loaders (such as GHOSTPULSE), and various forms of phishing campaigns,” VMware Carbon Black researchers said in a report shared with TheRead More
-
CISA Releases Cybersecurity Guidance for Healthcare, Public Health Organizations Ionut Arghire
New CISA guidance details cyber threats and risks to healthcare and public health organizations and recommends mitigations. The post CISA Releases Cybersecurity Guidance for Healthcare, Public Health Organizations appeared first on SecurityWeek. Read More
-

DarkGate and PikaBot Malware Resurrect QakBot’s Tactics in New Phishing Attacks [email protected] (The Hacker News)
Phishing campaigns delivering malware families such as DarkGate and PikaBot are following the same tactics previously used in attacks leveraging the now-defunct QakBot trojan. “These include hijacked email threads as the initial infection, URLs with unique patterns that limit user access, and an infection chain nearly identical to what we have seen with QakBot delivery,”…
-

Product Walkthrough: Silverfort’s Unified Identity Protection Platform [email protected] (The Hacker News)
In this article, we will provide a brief overview of Silverfort’s platform, the first (and currently only) unified identity protection platform on the market. Silverfort’s patented technology aims to protect organizations from identity-based attacks by integrating with existing identity and access management solutions, such as AD (Active Directory) and cloud-based services, and extending secureRead More
-
Morgan Stanley Ordered to Pay $6.5 Million for Exposing Customer Information Ionut Arghire
Morgan Stanley agrees to pay $6.5 million for exposing personal information through negligent data-security practices. The post Morgan Stanley Ordered to Pay $6.5 Million for Exposing Customer Information appeared first on SecurityWeek. Read More
-
Microsoft Hires Sam Altman and OpenAI’s New CEO Vows to Investigate His Firing Associated Press
Microsoft hired Sam Altman and another architect of OpenAI for a new venture after their sudden departures shocked the artificial intelligence world. The post Microsoft Hires Sam Altman and OpenAI’s New CEO Vows to Investigate His Firing appeared first on SecurityWeek. Read More
-
Johnson Controls Patches Critical Vulnerability in Industrial Refrigeration Products Eduard Kovacs
Johnson Controls has patched a critical vulnerability that can be exploited to take complete control of Frick industrial refrigeration products. The post Johnson Controls Patches Critical Vulnerability in Industrial Refrigeration Products appeared first on SecurityWeek. Read More
