Multiple US water utilities hit by Iran-backed hackers
The attackers hacked facilities that operate Unitronics PLCs likely by compromising internet-accessible devices with default passwords.
The attackers hacked facilities that operate Unitronics PLCs likely by compromising internet-accessible devices with default passwords.
The campaign used spear-phishing as a means to gain access to the victim’s network.
The new malware variant comes with updated evasion mechanisms.
The campaign leverages a private version of DanaBot instead of the malware-as-a-service offering.
Upon compromising the victim’s mailbox, the attackers modify folder permissions within the mailbox.
Vladimir Dunaev developed malicious tools used for credential harvesting and data stealing from infected computers.
The US authorities seized the crypto mixer Sinbad.io allegedly used by the Lazarus hackers to launder money.
The world in brief: Apple, Google fix WebKit, Chrome zero-days, Qlik Sense bugs exploited by Cactus ransomware, and more.
GoTitan is designed for launching DDoS attacks via protocols such as HTTP, UDP, TCP, and TLS.
The authorities described the service as “a key money-laundering tool” of Lazarus.
Showing elements 1741 - 1750