Russian-backed Turla targets Ukraine with new StockStay malware
StockStay shares code and functionality with Kazuar, another Turla's malware framework used in espionage campaigns against military targets.
StockStay shares code and functionality with Kazuar, another Turla's malware framework used in espionage campaigns against military targets.
In brief: Cisco flaws are being actively exploited by hackers, police dismantle SocGholish, StealC and Amedey malware, and more.
The high-severity flaw allowed attackers with access to affected devices to run commands as root by uploading a specially crafted file.
The attackers exploited known SharePoint vulnerabilities and conducted reconnaissance for additional access paths.
The Edgecution extension consists of a Microsoft Edge extension and a Python-based backdoor, which allows system information collection, filesystem access, process creation, and arbitrary code execution.
In a separate case, US authorities have seized a cloud computing account used by subsidiaries of the Cambodia-based Huione Group.
LastPass said its products, services, infrastructure, and customer password vaults were not affected.
The tool abuses FortiOS's built-in packet-sniffing feature to capture network traffic and collect authentication data.
The campaign uses healthcare-themed spear-phishing emails that contain malicious RAR archives disguised as legitimate documents.
The 2024 cyberattack disrupted TfL services for around three months and affected an estimated 10 million customers.
Showing elements 81 - 90