JDownloader website breach distributed malware to Windows and Linux users
Attackers reportedly altered download links on the official site, redirecting users to malicious third-party payloads instead of legitimate installers.
Attackers reportedly altered download links on the official site, redirecting users to malicious third-party payloads instead of legitimate installers.
In brief: Ivanti and Palo Alto Networks fix zero-days, Daemon Tools compromised in a supply chain attack, and more.
The group likely exploits vulnerabilities in web-facing applications, including both zero-day and known flaws.
The flaw, tracked as CVE-2026-0300, allows unauthenticated attackers to execute arbitrary code with root privileges.
The suspect used software-defined radio (SDR) equipment and modified handheld radios to interfere with the Taiwan High Speed Rail.
The attackers used the legitimate Microsoft Phone Link app to access sensitive mobile data without infecting the victim’s smartphone.
The malicious code was embedded into Android game downloads hosted on the platform.
Deniss Zolotarjovs allegedly played a key role in ransomware operations carried out by a group known as Karakurt, TommyLeaks, and SchoolBoys Ransomware.
The operation, dubbed ‘VENOMOUS#HELPER,’ mainly targets US-based entities and appears to be financially motivated.
Users are strongly advised to apply patches as soon as possible.
Showing elements 231 - 240