Hackers exploit Discord invite system to spread info-stealers and RATs
The attackers hijacked expired or deleted vanity invite links on Discord, redirecting users to malicious servers.
The attackers hijacked expired or deleted vanity invite links on Discord, redirecting users to malicious servers.
The 30-year-old alleged administrator, a German national, was arrested in Spain.
The wiper is triggered by a command-line parameter labeled /WIPEMODE, which requires key-based authentication to activate.
The attack reportedly targeted journalists’ Microsoft accounts, potentially granting unauthorized access to sensitive work emails.
In brief: Microsoft fixes zero-day exploited by the Stealth Falcon APT, the Graphite spyware targets journalists via an iMessage exploit, and more.
The campaign, first observed on June 5, involves brute-force login attempts originating from hundreds of unique IP addresses.
The company said that this is a preventive action and not related to any recent security incident.
Dubbed ‘Operation Secure’, the effort ran from January to April 2025 and targeted cybercriminal infrastructure worldwide.
The vulnerability, dubbed ‘DanaBleed,’ stemmed from a memory leak in the malware's updated command-and-control protocol.
The attack has targeted high-profile entities in the government and defense sectors in Turkey, Qatar, Egypt, and Yemen.
Showing elements 761 - 770