New DoubleAlienRat APT targets private and government entities in China
The group gains initial access to target networks by exploiting known vulnerabilities.
The group gains initial access to target networks by exploiting known vulnerabilities.
The campaign uses automated tools to clone public GitHub code repositories, scanning for exposed AWS IAM credentials.
The victims are lured to download malicious MSIX packages through compromised websites, SEO techniques, or malvertising.
LockBit said their ransomware affiliate gained access to the company’s systems by exploiting a zero-day vulnerability.
The world in brief: Admins urged to fix Citrix NetScaler flaw, CCleaner confirms it was hit with MOVEit attack, and more.
The group has been observed employing various tactics to conceal the origin of its operations.
Due to the severity of the flaw, the vendor also released a patch for end-of-life products.
The group has been exploiting CVE-2023-5631 since October 11, 2023.
The group made more than €3 million through various online scams such as smishing, phishing and vishing.
The attacks have been ongoing since May 2023.
Showing elements 1881 - 1890