Iranian Hackers Deploy WezRat Malware in Attacks Targeting Israeli Organizations post, november 15, 2024februari 24, 2025 Cybersecurity researchers have shed light on a new remote access trojan and information stealer used by Iranian state-sponsored actors to conduct reconnaissance of compromised endpoints and execute malicious commands. Cybersecurity company Check Point has codenamed the malware WezRat, stating it has been detected in the wild since at least September 1,… Continue Reading
People’s Republic of China Undertaking Major Cyberespionage Targeting U.S. Telecom Networks post, november 15, 2024november 18, 2024 US authorities have revealed a “broad and significant” cyberespionage campaign conducted by China-linked hackers aimed at stealing information from Americans involved in government and politics. In a joint statement on Wednesday, the FBI and the Cybersecurity and Infrastructure Security Agency (CISA) reported that hackers connected to Beijing had “compromised networks… Continue Reading
Single Right-Click Let Hackers Gain Access To System By Exploiting 0-Day post, november 14, 2024februari 24, 2025 A newly discovered 0-day vulnerability in Windows systems, CVE-2024-43451, has been actively exploited by suspected Russian hackers to target Ukrainian entities. This 0-day flaw, identified by security analysts at ClearSky Cyber Security in June 2024, allows attackers to gain unauthorized access to systems through minimal user interaction. Continue Reading
Hamas Hackers Spy on Mideast Gov’ts, Disrupt Israel post, november 14, 2024november 18, 2024 A longstanding threat actor affiliated with Hamas has been conducting espionage against governments across the Middle East and destructive wiper attacks in Israel. “Wirte” is a 6 1/2-year-old advanced persistent threat (APT) working to support Hamas’ political agenda. Check Point Research identifies it as a subgroup of the Gaza Cybergang… Continue Reading
ShrinkLocker ransomware scrambled your files? Free decryption tool to the rescue post, november 14, 2024november 18, 2024 Bitdefender has released a free decryption tool that can unlock data encrypted by the ShrinkLocker ransomware. Bitdefender made the decryptor publicly available following an extensive analysis of the malware strain, which was uncovered in May and found to use VBScript and Microsoft Windows’ built-in BitLocker encryption feature to scramble victims’… Continue Reading
Reminder: China-backed crews compromised ‘multiple’ US telcos in ‘significant cyber espionage campaign’ post, november 14, 2024 The US government has confirmed there was “a broad and significant cyber espionage campaign” conducted by China-linked snoops against “multiple” American telecommunications providers’ networks. In a joint statement issued on Wednesday by the FBI and US Cybersecurity and Infrastructure Security Agency (CISA), the two government bodies said the previously-reported digital assaults resulted… Continue Reading
Cybercriminals Use Excel Exploit to Spread Fileless Remcos RAT Malware post, november 11, 2024november 14, 2024 Cybersecurity researchers have discovered a new phishing campaign that spreads a new fileless variant of known commercial malware called Remcos RAT. Remcos RAT “provides purchases with a wide range of advanced features to remotely control computers belonging to the buyer,” Fortinet FortiGuard Labs researcher Xiaopeng Zhang said in an analysis published last week…. Continue Reading
Hackers now use ZIP file concatenation to evade detection post, november 10, 2024november 14, 2024 Hackers are targeting Windows machines using the ZIP file concatenation technique to deliver malicious payloads in compressed archives without security solutions detecting them. The technique exploits the different methods ZIP parsers and archive managers handle concatenated ZIP files. This new trend was spotted by Perception Point, who discovered a a concatentated ZIP… Continue Reading
North Korean Hackers Abuse Cloud-Based Services to Deploy Malware post, november 9, 2024november 14, 2024 ESET’s recent report details the activities of various advanced persistent threat (APT) groups from April to September 2024, highlighting key trends and developments observed during this period, including the use of sophisticated techniques such as targeted phishing attacks, malware distribution, and vulnerability exploitation. Continue Reading
FBI: Spike in Hacked Police Emails, Fake Subpoenas post, november 9, 2024november 14, 2024 The Federal Bureau of Investigation (FBI) is urging police departments and governments worldwide to beef up security around their email systems, citing a recent increase in cybercriminal services that use hacked police email accounts to send unauthorized subpoenas and customer data requests to U.S.-based technology companies. Continue Reading