Category: Uncategorized
-

Rust-Written 3AM Ransomware: A Sneak Peek into a New Malware Family [email protected] (The Hacker News)
A new ransomware family called 3AM has emerged in the wild after it was detected in a single incident in which an unidentified affiliate deployed the strain following an unsuccessful attempt to deploy LockBit (aka Bitwise Spider or Syrphid) in the target network. “3AM is written in Rust and appears to be a completely new malware family,” the Symantec Threat…
-

How Cyberattacks Are Transforming Warfare [email protected] (The Hacker News)
There is a new battlefield. It is global and challenging to defend. What began with a high-profile incident back in 2007, when Estonia was hit by hackers targeting its government and commercial sector, has evolved into cyber warfare that is being waged constantly worldwide. Today, cyberattacks have become the norm, transforming how we think about…
-

Microsoft Warns of New Phishing Campaign Targeting Corporations via Teams Messages [email protected] (The Hacker News)
Microsoft is warning of a new phishing campaign undertaken by an initial access broker that involves using Teams messages as lures to infiltrate corporate networks. The tech giant’s Threat Intelligence team is tracking the cluster under the name Storm-0324, which is also known by the monikers TA543 and Sagrid. “Beginning in July 2023, Storm-0324 was observed…
-
After Apple and Google, Mozilla Also Patches Zero-Day Exploited for Spyware Delivery Eduard Kovacs
After Apple and Google, Mozilla has also patched an image processing-related zero-day vulnerability exploited by spyware. The post After Apple and Google, Mozilla Also Patches Zero-Day Exploited for Spyware Delivery appeared first on SecurityWeek. Read More
-

Microsoft Releases Patch for Two New Actively Exploited Zero-Days Flaws [email protected] (The Hacker News)
Microsoft has released software fixes to remediate 59 bugs spanning its product portfolio, including two zero-day flaws that have been actively exploited by malicious cyber actors. Of the 59 vulnerabilities, five are rated Critical, 55 are rated Important, and one is rated Moderate in severity. The update is in addition to 35 flaws patched in the Chromium-based Edge browser…
-

Update Adobe Acrobat and Reader to Patch Actively Exploited Vulnerability [email protected] (The Hacker News)
Adobe’s Patch Tuesday update for September 2023 comes with a patch for a critical actively exploited security flaw in Acrobat and Reader that could permit an attacker to execute malicious code on susceptible systems. The vulnerability, tracked as CVE-2023-26369, is rated 7.8 for severity on the CVSS scoring system and impacts both Windows and macOS versions of…
-

Mozilla Rushes to Patch WebP Critical Zero-Day Exploit in Firefox and Thunderbird [email protected] (The Hacker News)
Mozilla on Tuesday released security updates to resolve a critical zero-day vulnerability in Firefox and Thunderbird that has been actively exploited in the wild, a day after Google released a fix for the issue in its Chrome browser. The shortcoming, assigned the identifier CVE-2023-4863, is a heap buffer overflow flaw in the WebP image format that…
-
Zero Day Summer: Microsoft Warns of Fresh New Software Exploits Ryan Naraine
Microsoft’s struggles with zero-day exploits rolled into a new month with a fresh Patch Tuesday warning about malware attacks in the wild. The post Zero Day Summer: Microsoft Warns of Fresh New Software Exploits appeared first on SecurityWeek. Read More
-
Intel Capital Bets on Zenity for Low-Code/No-Code Security Ryan Naraine
Israeli security startup Zenity banks $16.5 million in new venture capital funding to work on ‘low-code/no-code’ security technology. The post Intel Capital Bets on Zenity for Low-Code/No-Code Security appeared first on SecurityWeek. Read More
-
Adobe Says Critical PDF Reader Zero-Day Being Exploited Ryan Naraine
Adobe raises an alarm for new in-the-wild zero-day attacks hitting users of its widely deployed Adobe Acrobat and Reader product. The post Adobe Says Critical PDF Reader Zero-Day Being Exploited appeared first on SecurityWeek. Read More
