New DarkSword exploit kit targets iPhones, steals crypto and personal data
DarkSword leverages six known vulnerabilities to gain deep access to compromised devices.
In brief: Threat actors are exploiting Zimbra, MS SharePoint and WingFTP flaws, police disrupt the Aisuru, KimWolf, JackSkid and Mossad botnets, and more.
DarkSword leverages six known vulnerabilities to gain deep access to compromised devices.
Interlock had been abusing the flaw as a zero-day issue in real-world attacks as early as January 26.
Attackers gained initial access by compromising GitHub accounts and force-pushing malicious commits into existing projects.
The group is now using AI-assisted malware that includes anti-analysis features, helping it stay hidden in compromised systems for longer periods.
Russia systematically employs diplomatic missions for intelligence collection, cyber operations, and influence campaigns.
Attackers are now incorporating Bench.sh as a lightweight reconnaissance utility after gaining initial access.