Wildly popular NPM package hijacked to install crypto-mining, password- stealing malware
It appears that malicious actors hijacked the NPM account of Faisal Salman, developer of the UAParser.js library.
It appears that malicious actors hijacked the NPM account of Faisal Salman, developer of the UAParser.js library.
The main purpose of the malware is credential theft and in-game-purchase hijacking.
The new rule is set to go into effect in 90 days.
LightBasin is active since at least 2016 and is focused on Linux and Solaris servers, only interacting with Windows systems as needed.
Attempted attacks come days after a massive ransomware attack on Hillel Yaffe Medical Center, attributed to the DeepBlueMagic group.
Harvester has been observed using both custom malware and publicly available tools, such as Cobalt Strike Beacon and Metasploit, in their attacks.
Since July 2021, BlackMatter has targeted multiple U.S. critical infrastructure entities, including two U.S. Food and Agriculture Sector organizations.
Twitch said that no login credentials or full credit card info data belonging to users or streamers were exposed in the data breach.
At present, it is unknown who compromised the gang servers.
Over the past few months, hackers have targeted wastewater plants in California, Maine and Nevada with ransomware attacks.
Showing elements 2801 - 2810