Cyber Security Week in Review: June 20, 2025
In brief: the Langflow, TP-Link and Zyxel flaws exploited in the wild, Russian hackers use ASPs to infiltrate victims’ email accounts, and more
In brief: the Langflow, TP-Link and Zyxel flaws exploited in the wild, Russian hackers use ASPs to infiltrate victims’ email accounts, and more
Victims were tricked into creating and sharing ASPs under the mistaken belief that they are enabling secure communication with the US Department of State.
Using custom-developed malware, including ransomware such as LockerGoga, MegaCortex, HIVE and Dharma, the hackers encrypted data on corporate networks.
In a 2019 interview, Andriunin openly described building algorithms to carry out these fake trades.
ClickFix tricks victims into copying and pasting malicious PowerShell that results in malware execution.
The company said that there was “no evidence to suggest any impact to customers.”
The campaign delivers advanced malware strains including HoldingHands RAT and Gh0stCringe.
At least 76 GitHub accounts are linked to the campaign.
The Zyxel flaw (CVE-2023-28771) is being targeted by the Mirai botnet malware.
Attackers are leveraging the vulnerability to deliver downloader scripts that fetch and install the Flodrix malware.
Showing elements 751 - 760