Hackers exploit SimpleHelp flaw to deploy new cross-platform malware
Attackers used the flaw to gain access to a SimpleHelp server before installing the TaskWeaver malware loader, and Djinn Stealer.
Attackers used the flaw to gain access to a SimpleHelp server before installing the TaskWeaver malware loader, and Djinn Stealer.
Gamaredon's main goal remains stealing sensitive information that could support Russian interests in the war against Ukraine.
The attackers have shifted to targeting exposed AI application endpoints as the initial access vector.
The attackers hid malicious code inside image and font files, allowing it to avoid detection.
The fake USB drives were reportedly handed to soldiers during earthquake relief efforts in March 2024.
StockStay shares code and functionality with Kazuar, another Turla's malware framework used in espionage campaigns against military targets.
In brief: Cisco flaws are being actively exploited by hackers, police dismantle SocGholish, StealC and Amedey malware, and more.
The high-severity flaw allowed attackers with access to affected devices to run commands as root by uploading a specially crafted file.
The attackers exploited known SharePoint vulnerabilities and conducted reconnaissance for additional access paths.
The Edgecution extension consists of a Microsoft Edge extension and a Python-based backdoor, which allows system information collection, filesystem access, process creation, and arbitrary code execution.
Showing elements 141 - 150