Skip to content
Security matters
Security matters
  • APTs
  • Tijdlijn
  • Kill chain
  • Uitgelicht
  • Privacy
Security matters

Tag: 2024

RansomHub Ransomware Group Targets 210 Victims Across Critical Sectors

post, september 2, 2024september 3, 2024

Threat actors linked to the RansomHub ransomware group encrypted and exfiltrated data from at least 210 victims since its inception in February 2024, the U.S. government said. The victims span various sectors, including water and wastewater, information technology, government services and facilities, healthcare and public health, emergency services, food and agriculture, financial…

Continue Reading

Notorious Iranian Hackers Have Been Targeting the Space Industry With a New Backdoor

post, augustus 28, 2024juli 3, 2025

The Iranian government-backed hacking group known as APT 33 has been active for more than 10 years, conducting aggressive espionage operations against a diverse array of public and private sector victims around the world, including critical infrastructure targets. And while the group is particularly known for strategic but technically simple attacks like “password spraying,” it has…

Continue Reading

Iranian hackers target WhatsApp accounts of Biden and Trump administration associates, Meta says

post, augustus 24, 2024augustus 26, 2024

An Iranian hacker group targeted the WhatsApp accounts of individuals associated with the administrations of President Joe Biden and former President Donald Trump, Meta announced Friday. “This malicious activity originated in Iran and attempted to target individuals in Israel, Palestine, Iran, the United States and the UK,” the social media giant said in…

Continue Reading

New macOS Malware “Cthulhu Stealer” Targets Apple Users’ Data

post, augustus 23, 2024

Cybersecurity researchers have uncovered a new information stealer that’s designed to target Apple macOS hosts and harvest a wide range of information, underscoring how threat actors are increasingly setting their sights on the operating system. Dubbed Cthulhu Stealer, the malware has been available under a malware-as-a-service (MaaS) model for $500…

Continue Reading

Google Fixes High-Severity Chrome Flaw Actively Exploited in the Wild

post, augustus 22, 2024augustus 23, 2024

Google has rolled out security fixes to address a high-severity security flaw in its Chrome browser that it said has come under active exploitation in the wild. Tracked as CVE-2024-7971, the vulnerability has been described as a type confusion bug in the V8 JavaScript and WebAssembly engine. “Type confusion in V8…

Continue Reading

Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk

post, augustus 22, 2024februari 24, 2025

SolarWinds has issued patches to address a new security flaw in its Web Help Desk (WHD) software that could allow remote unauthenticated users to gain unauthorized access to susceptible instances. “The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing [a] remote unauthenticated user to…

Continue Reading

Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus Group

post, augustus 19, 2024februari 24, 2025

A newly patched security flaw in Microsoft Windows was exploited as a zero-day by Lazarus Group, a prolific state-sponsored actor affiliated with North Korea. The security vulnerability, tracked as CVE-2024-38193 (CVSS score: 7.8), has been described as a privilege escalation bug in the Windows Ancillary Function Driver (AFD.sys) for WinSock. “An attacker who…

Continue Reading

Hackers breach ISP to poison software updates with malware

post, augustus 3, 2024augustus 19, 2024

A Chinese hacking group tracked as StormBamboo has compromised an undisclosed internet service provider (ISP) to poison automatic software updates with malware. Also tracked as Evasive Panda, Daggerfly, and StormCloud, this cyber-espionage group has been active since at least 2012, targeting organizations across mainland China, Hong Kong, Macao, Nigeria, and various Southeast…

Continue Reading

Cybercriminals Exploit CrowdStrike Update Mishap to Distribute Remcos RAT Malware

post, juli 20, 2024juli 22, 2024

Cybersecurity firm CrowdStrike, which is facing the heat for causing worldwide IT disruptions by pushing out a flawed update to Windows devices, is now warning that threat actors are exploiting the situation to distribute Remcos RAT to its customers in Latin America under the guise of providing a hotfix. The attack chains…

Continue Reading

AT&T Paid a Hacker $370,000 to Delete Stolen Phone Records

post, juli 14, 2024juli 15, 2024

A security researcher who assisted with the deal says he believes the only copy of the complete dataset of call and text records of “nearly all” AT&T customers has been wiped—but some risks may remain. US telecom giant AT&T, which disclosed Friday that hackers had stolen the call records for tens…

Continue Reading
  • Previous
  • 1
  • …
  • 4
  • 5
  • 6
  • …
  • 12
  • Next

2020 2023 2024 2025 2026 China Iran North Korea Russia ShinyHunters

©2026 Security matters | WordPress Theme by SuperbThemes