North Korean hackers use Facebook to spread malware
The hackers used a tactic called “pretexting,” tricking victims into downloading a fake PDF viewer.
The hackers used a tactic called “pretexting,” tricking victims into downloading a fake PDF viewer.
Authorities also detained the alleged developer of the operation and seized key domains linked to the scheme.
The attack involves an Open VSX extension disguised as the popular time-tracking tool WakaTime.
Since routers sit between users and AI systems, they can see all unencrypted data like API keys and user prompts.
The flaw, tracked as CVE-2026-34621, could allow attackers to execute malicious code on affected systems.
Attackers gained access to a secondary API linked to CPUID’s website and redirected users to trojanized versions of software disguised as legitimate tools.
In brief: Fortinet fixes a zero-day flaw, authorities disrupt the FrostArmada botnet operated by Russian APT28, and more.
In some cases, the attackers had directly contacted internal IT support and helpdesk staff to manipulate them into granting system access.
Masjesu is capable of infecting a wide range of system architectures, including i386, ARM, MIPS, and AMD64.
REvil, which grew out of the GandCrab group, was behind several high-profile cyberattacks on global companies.
Showing elements 131 - 140