SonicWall SMA zero-day exploited in attacks
SonicWall has released a patch in version 12.4.3-02854 and higher versions to address the issue.
SonicWall has released a patch in version 12.4.3-02854 and higher versions to address the issue.
The attackers replaced a legitimate installer with a malicious version that planted the SlowStepper backdoor on the system.
The botnet operates through an extensive network of over 100 command-and-control servers.
Ulbricht has spent over a decade behind bars after being sentenced to life in prison without the possibility of parole.
The campaign has targeted critical sectors in Russia, including defense and infrastructure, with the goal of stealing sensitive information.
The malware, named Tanzeem and Tanzeem Update, was first detected in October and December 2024, respectively.
The campaigns are designed to overwhelm victims with massive volumes of spam emails.
The attacks involve a multi-stage infection chain that delivers the ValleyRAT malware through a loader called PNGPlug.
The stolen data allegedly includes source code, Docker builds, SAP Hybris, and certificates, including both private and public keys.
Operation 99 aims to steal sensitive information, including source code, configuration files, API keys, and crypto wallet credentials.
Showing elements 831 - 840