Supply chain attack targets popular npm package LottieFiles
Three malicious versions of the package were discovered designed to steal crypto wallet assets.
Three malicious versions of the package were discovered designed to steal crypto wallet assets.
The vulnerability has been exploited by a threat actor group known as Earth Kasha.
Earth Estries employs a complex command-and-control (C&C) infrastructure operated by distinct teams.
The attack chain begins with a fake website designed to redirect users to an exploit server.
The malware uses a vulnerable driver to gain kernel-level access to the operating system.
The messages tricked victims into clicking malicious links, potentially exposing their personal and financial information.
Google has blocked hundreds of domains linked to the Glassbridge network.
The Nearest Neighbor Attack involves compromising nearby devices connected to vulnerable Wi-Fi networks and using them to infiltrate target systems.
In brief: 2K+ PAN devices compromised in an ongoing attack, 240 domains linked to the ONNX phishing service disrupted, and more.
The attack relies on a relay mechanism that connects a stolen card to a PPOS terminal via NFC.
Showing elements 1131 - 1140