Ukraineu2019s government entities targeted in attacks exploiting recent MS Office flaw
According to CERT-UA, the flaw was weaponized within a day of Microsoftu2019s disclosure.
Masquerading as legitimate cryptocurrency trading automation tools, the packages, known as u201cskills,u201d deliver data-stealing malware.
According to CERT-UA, the flaw was weaponized within a day of Microsoftu2019s disclosure.
The malicious updates embedded the GlassWorm malware loader and were pushed to users through normal update mechanisms.
The attack involved an infrastructure-level breach at Notepad++u2019s hosting provider, not vulnerabilities in the applicationu2019s source code.
Mandiant is tracking the activity across multiple threat clusters, including UNC6661, UNC6671, and UNC6240.
Flare says it found more than 208,500 publicly exposed MongoDB servers, including 3,100 that required no authentication.
In brief: Ivanti, Microsoft and Fortinet fix zero-days, eScan hit with a supply chain attack, and more.