Enterprise password manager Passwordstate hacked to install malware on customers systems
Threat actors compromised the software's update mechanism, and used it to deploy malware called ‘Moserware’ on user computers.
Threat actors compromised the software's update mechanism, and used it to deploy malware called ‘Moserware’ on user computers.
The bugs have been used as part of a widespread hacking campaign.
The breach led to the exposure of HashiCorp’s GPG private key.
CISA says it’s a separate incident from last-year’s SolarWinds supply-chain compromise.
The threat actors behind the botnet have been leveraging recently disclosed Microsoft Exchange vulnerabilities to gain access to a network and install malware.
One of the hacker groups targeted primarily domestic audiences in Palestine, and the other cluster targeted audiences in the Palestinian territories and Syria.
The flaw affects Trend Micro Apex One, Apex One SaaS, and OfficeScan Corporate Edition.
Two graduate students at the University of Minnesota deliberately introduced known security bugs in the Linux kernel in the name of research.
The campaign uses 7-zip to move files on QNAP devices into password-protected archives.
In the observed attacks malicious actors leveraged several Pulse Secure vulnerabilities patched in 2019 and 2020 and a previously unknown bug.
Showing elements 3091 - 3100