TDS platform VexTrio runs massive cybercrime operation involving over 60 affiliates
VexTrio operates as a traffic broker without direct ties to any specific malware
VexTrio operates as a traffic broker without direct ties to any specific malware
The group used a fake threat intelligence report about a fellow APT to deploy the RokRAT backdoor.
While there’s no indication that the flaw is being exploited in the wild, PoC is available, meaning that active exploitation attempts are likely to follow soon.
During the initial two years of his release, Fitzpatrick will be subject to home arrest with a GPS locator and mandatory mental health treatment.
The hacker, identified as 33-year-old Russian national Aleksandr Ermakov, is believed to be a member of the notorious Russian ransomware gang REvil.
Users are urged to patch the flaw as soon as possible.
The vendor has also fixed several high-severity issues that could be abused for remote code execution.
The attack is said to have impacted Swedish cinema chain Filmstaden, universities and government agencies.
In the attack, vulnerable hosts have been targeted by JSP-based web shells hidden within the ‘admin’ folder of the ActiveMQ installation directory.
The campaign has been linked to UNC3886, a threat actor known for its previous attacks against vulnerable VMware and Fortinet appliances.
Showing elements 1651 - 1660