Malicious Python packages target Telegram bot developers
Attackers published at least eight fake Pyrogram packages that included the original code along with a hidden backdoor.
Attackers published at least eight fake Pyrogram packages that included the original code along with a hidden backdoor.
The campaigns leveraged a new malware toolkit that includes SHARDLOADER, MINIRECON, and ZOHOMURK.
New Microsoft’s research shows that AI agents can be tricked into sharing sensitive information without breaking any rules.
The attack affects AI browsers and assistants that can perform actions on a user's behalf, such as clicking links, filling out forms, and accessing signed-in accounts.
UNC5792 is associated with the FSB Border Guards, while UNC4221 is believed to operate on behalf of the Russian military.
Attackers used the flaw to gain access to a SimpleHelp server before installing the TaskWeaver malware loader, and Djinn Stealer.
Gamaredon's main goal remains stealing sensitive information that could support Russian interests in the war against Ukraine.
The attackers have shifted to targeting exposed AI application endpoints as the initial access vector.
The attackers hid malicious code inside image and font files, allowing it to avoid detection.
The fake USB drives were reportedly handed to soldiers during earthquake relief efforts in March 2024.
Showing elements 71 - 80