Russia-linked espionage operation targeting webmail servers via XSS flaws
The campaign exploits XSS vulnerabilities in widely used webmail servers to steal sensitive data from high-value targets.
The campaign exploits XSS vulnerabilities in widely used webmail servers to steal sensitive data from high-value targets.
If convicted on all counts, Masurica faces up to 55 years in federal prison.
Microsoft shipped patches for over 70 flaws, five of which have been flagged as actively exploited zero-day bugs.
The flaw was exploited to gain access to enterprise systems globally.
The campaigns employed supply chain attacks targeting organizations, spanning critical industries from military to healthcare.
The suspect remains in custody and is awaiting extradition to the Netherlands.
The campaigns aim to harvest credentials and deliver malware, likely to gather intelligence related to the ongoing Russian invasion of Ukraine.
In a separate action, German authorities shut down the German server infrastructure of the crypto swapping service eXch, suspected of laundering illicit funds.
The operation, active since April 2024, has primarily targeted Kurdish military personnel in Iraq.
In brief: SAP zero-day exploited by Chinese hackers, SonicWall patches bugs in its SMA appliances, and more.
Showing elements 621 - 630