Cyber Security Week in Review: June 28, 2024
In brief: TeamViewer discloses security breach, threat actor are actively exploiting a recently patched MOVEit Transfer bug, and more.
In brief: TeamViewer discloses security breach, threat actor are actively exploiting a recently patched MOVEit Transfer bug, and more.
The infection process involves DLL sideloading and the use of the Shadowloader tool.
Together with GRU Stigal orchestrated a destructive WhisperGate campaign targeting Ukrainian government systems ahead of Russia’s invasion in 2022.
Any.Run said that no data or system integrity was impacted during the attack.
The researchers have observed botnet operators exploiting multiple flaws to target various devices.
Users are recommended to upgrade to the latest fixed MOVEit Transfer version.
The Polyfill.io domain and service, which was purchased by a Chinese company, has reportedly been modified to introduce malicious code.
GrimResource allows attackers to execute arbitrary code in MMC with minimal security warnings.
These attacks come just weeks after three high-severity Zyxel NAS vulnerabilities were publicly disclosed.
The group used phishing campaigns and supply chain attacks to breach their victims’ computer networks.
Showing elements 1411 - 1420