Zimbra zero-day exploited via malicious calendar invites
The campaign began in early January and included a targeted attack on a Brazilian military organization.
The campaign began in early January and included a targeted attack on a Brazilian military organization.
In brief: Chinese hackers are exploiting a recently patched VMware flaw, a smishing campaign abuses Milesight routers for phishing, and more.
The hacker collective claims to have stolen nearly 570GB of compressed data spread across over 28,000 internal projects.
Once installed, the malicious apps gain persistent access and silently exfiltrate sensitive data.
The group blends custom tooling with shared operational infrastructure.
The campaign, active since at least February 2022, leverages a vulnerability tracked as CVE-2023-43261.
Experts note some shift in attackers’ behavior such as an adoption of the “Steal & Go” tactic.
The threat actors distributed the XLL payloads inside ZIP archives shared via the Signal messaging app.
Zhimin Qian was behind a vast fraudulent Bitcoin investment scheme that defrauded over 128,000 victims in China.
Administrators are advised to apply the available updates and follow vendor guidance to mitigate the risk.
Showing elements 491 - 500