Skip to content
Security matters
Security matters
  • APTs
  • Tijdlijn
  • Kill chain
  • Uitgelicht
  • Privacy
Security matters

American Water Works IT Systems Hit by Cyber Attack

post, oktober 8, 2024oktober 9, 2024

American Water Works Company, Inc., the largest regulated water and wastewater utility in the United States, reported a cybersecurity incident on October 3, 2024, affecting its computer networks and systems. The company, which provides services to over 14 million people across 14 states and 18 military installations, immediately activated its incident…

Continue Reading

Chinese Government Hackers Infiltrate U.S Telecommunications Companies

post, oktober 6, 2024oktober 7, 2024

A group of hackers linked to the Chinese government has infiltrated multiple US telecommunications companies in recent months, likely in an effort to access sensitive national security information. The hacking activity was first reported by The Wall Street Journal (WSJ). US investigators suspect that the hackers may have gained access…

Continue Reading

Apple Releases Critical iOS and iPadOS Updates to Fix VoiceOver Password Vulnerability

post, oktober 5, 2024oktober 7, 2024

Apple has released iOS and iPadOS updates to address two security issues, one of which could have allowed a user’s passwords to be read out aloud by its VoiceOver assistive technology. The vulnerability, tracked as CVE-2024-44204, has been described as a logic problem in the new Passwords app impacting a slew of…

Continue Reading

North Korean Hackers Using New VeilShell Backdoor in Stealthy Cyber Attacks

post, oktober 3, 2024juli 3, 2025

Threat actors with ties to North Korea have been observed delivering a previously undocumented backdoor and remote access trojan (RAT) called VeilShell as part of a campaign targeting Cambodia and likely other Southeast Asian countries. The activity, dubbed SHROUDED#SLEEP by Securonix, is believed to be the handiwork of APT37, which is also known…

Continue Reading

Chrome Security Vulnerabilities Let Attackers Execute Arbitrary Code

post, oktober 3, 2024

Google has released a critical security update for its Chrome browser, addressing multiple high-severity vulnerabilities that could potentially allow attackers to execute arbitrary code on users’ systems. The latest stable channel update, version 129.0.6668.89/.90 for Windows and Mac and 129.0.6668.89 for Linux, is being rolled out to users worldwide.

Continue Reading

PoC Exploit Released for Microsoft Office 0-day Flaw – CVE-2024-38200

post, oktober 3, 2024

Security researchers have released a proof-of-concept (PoC) exploit for the recently disclosed Microsoft Office vulnerability CVE-2024-38200, which could allow attackers to capture users’ NTLMv2 hashes. This high-severity flaw affects multiple versions of Microsoft Office, including Office 2016, Office 2019, Office LTSC 2021, and Microsoft 365 Apps for Enterprise.

Continue Reading

Three Iranian Hackers Charged for Influencing Trump Election Campaign

post, september 30, 2024

The U.S. Department of Justice has unsealed an indictment against three Iranian nationals linked to the Islamic Revolutionary Guard Corps (IRGC) for their alleged involvement in a “hack-and-leak” operation aimed at influencing the 2024 U.S. presidential election. The accused, Masoud Jalili, Seyyed Ali Aghamiri, and Yaser Balaghi, are charged with a…

Continue Reading

Chinese Hackers Infiltrate U.S. Internet Providers in Cyber Espionage Campaign

post, september 26, 2024september 26, 2024

Nation-state threat actors backed by Beijing broke into a “handful” of U.S. internet service providers (ISPs) as part of a cyber espionage campaign orchestrated to glean sensitive information, The Wall Street Journal reported Wednesday. The activity has been attributed to a threat actor that Microsoft tracks as Salt Typhoon, which is also…

Continue Reading

Chinese Hackers Exploit GeoServer Flaw to Target APAC Nations with EAGLEDOOR Malware

post, september 23, 2024

A suspected advanced persistent threat (APT) originating from China targeted a government organization in Taiwan, and possibly other countries in the Asia-Pacific (APAC) region, by exploiting a recently patched critical security flaw impacting OSGeo GeoServer GeoTools. “They used advanced techniques like GeoServer exploitation, spear-phishing, and customized malware (Cobalt Strike and…

Continue Reading

Move over, Cobalt Strike. Splinter’s the new post-exploit menace in town

post, september 23, 2024februari 24, 2025

Attackers are using Splinter, a new post-exploitation tool, to wreak havoc in victims’ IT environments after initial infiltration, utilizing capabilities such as executing Windows commands, stealing files, collecting cloud service account info, and downloading additional malware onto victims’ systems. Then the malicious code self-deletes, according to Palo Alto Networks’ Unit…

Continue Reading
  • Previous
  • 1
  • …
  • 34
  • 35
  • 36
  • …
  • 47
  • Next

2020 2023 2024 2025 2026 China Iran North Korea Russia ShinyHunters

©2026 Security matters | WordPress Theme by SuperbThemes