Second-ever UEFI rootkit spotted in attacks against diplomats with ties to North Korea
The malicious UEFI firmware is based on the leaked source code of the VectorEDK bootkit developed by now-defunct Italian vendor HackingTeam.
The malicious UEFI firmware is based on the leaked source code of the VectorEDK bootkit developed by now-defunct Italian vendor HackingTeam.
The attacks attributed to the Muddy Water APT group have been occurring for the last two weeks.
The cybercriminals have targeted the merchants’ point-of-sale (POS) terminals in an effort to harvest and exfiltrate payment card data.
The most notable thing about this botnet is that along with DDoS functionality it implements 12 remote access functions.
The hacker group remained largely undetected for more than nine years.
A weekly vulnerability digest.
The botnet now includes estimated 13, 500 devices in 84 countries across the globe with the majority of them located in Hong Kong, South Korea, and Taiwan.
The malware reportedly targets entities in India, Kazakhstan, Kyrgyzstan, Malaysia, Russia and Ukraine.
Adobe will end support of Flash Player on December 31, 2020.
The campaign took place between March and April this year and was aimed at at least 28 officials.
Showing elements 3671 - 3680