New malware linked to DaggerFly espionage group targets Linux-based network devices
The threat has been used as part of the Lunar Peek campaign, targeting Linux-based network appliances.
The threat has been used as part of the Lunar Peek campaign, targeting Linux-based network appliances.
The skimming malware was likely introduced through vulnerable components within the Magento e-commerce platform.
Potential targets are lured into the trap by receiving a link to communicate with an ‘interviewer’ via video call.
CVE-2025-0411 allows malicious actors to bypass the Windows Mark-of-the-Web (MotW) security feature.
Coyote is capable of keylogging, capturing screenshots, and displaying phishing overlays to steal user credentials.
The breach was traced back to a third-party application vulnerability that allowed a threat actor to gain access to a BeyondTrust AWS account.
The platform said that the attack was a “zero-click” operation.
CISA urges organizations to disconnect vulnerable Contec CMS8000 devices.
In brief: the Cracked and Nulled cybercrime forums shut down, Zyxel zero-day exploited in the wild, and more.
Cracked and Nulled served as hubs for illegal activity, from discussions about cybercrime to the sale of stolen data, malware, and hacking tools.
Showing elements 1011 - 1020