RansomHub Ransomware Group Targets 210 Victims Across Critical Sectors post, september 2, 2024september 3, 2024 Threat actors linked to the RansomHub ransomware group encrypted and exfiltrated data from at least 210 victims since its inception in February 2024, the U.S. government said. The victims span various sectors, including water and wastewater, information technology, government services and facilities, healthcare and public health, emergency services, food and agriculture, financial… Continue Reading
Notorious Iranian Hackers Have Been Targeting the Space Industry With a New Backdoor post, augustus 28, 2024juli 3, 2025 The Iranian government-backed hacking group known as APT 33 has been active for more than 10 years, conducting aggressive espionage operations against a diverse array of public and private sector victims around the world, including critical infrastructure targets. And while the group is particularly known for strategic but technically simple attacks like “password spraying,” it has… Continue Reading
Iranian hackers target WhatsApp accounts of Biden and Trump administration associates, Meta says post, augustus 24, 2024augustus 26, 2024 An Iranian hacker group targeted the WhatsApp accounts of individuals associated with the administrations of President Joe Biden and former President Donald Trump, Meta announced Friday. “This malicious activity originated in Iran and attempted to target individuals in Israel, Palestine, Iran, the United States and the UK,” the social media giant said in… Continue Reading
New macOS Malware “Cthulhu Stealer” Targets Apple Users’ Data post, augustus 23, 2024 Cybersecurity researchers have uncovered a new information stealer that’s designed to target Apple macOS hosts and harvest a wide range of information, underscoring how threat actors are increasingly setting their sights on the operating system. Dubbed Cthulhu Stealer, the malware has been available under a malware-as-a-service (MaaS) model for $500… Continue Reading
Google Fixes High-Severity Chrome Flaw Actively Exploited in the Wild post, augustus 22, 2024augustus 23, 2024 Google has rolled out security fixes to address a high-severity security flaw in its Chrome browser that it said has come under active exploitation in the wild. Tracked as CVE-2024-7971, the vulnerability has been described as a type confusion bug in the V8 JavaScript and WebAssembly engine. “Type confusion in V8… Continue Reading
Hardcoded Credential Vulnerability Found in SolarWinds Web Help Desk post, augustus 22, 2024februari 24, 2025 SolarWinds has issued patches to address a new security flaw in its Web Help Desk (WHD) software that could allow remote unauthenticated users to gain unauthorized access to susceptible instances. “The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing [a] remote unauthenticated user to… Continue Reading
Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus Group post, augustus 19, 2024februari 24, 2025 A newly patched security flaw in Microsoft Windows was exploited as a zero-day by Lazarus Group, a prolific state-sponsored actor affiliated with North Korea. The security vulnerability, tracked as CVE-2024-38193 (CVSS score: 7.8), has been described as a privilege escalation bug in the Windows Ancillary Function Driver (AFD.sys) for WinSock. “An attacker who… Continue Reading
Hackers breach ISP to poison software updates with malware post, augustus 3, 2024augustus 19, 2024 A Chinese hacking group tracked as StormBamboo has compromised an undisclosed internet service provider (ISP) to poison automatic software updates with malware. Also tracked as Evasive Panda, Daggerfly, and StormCloud, this cyber-espionage group has been active since at least 2012, targeting organizations across mainland China, Hong Kong, Macao, Nigeria, and various Southeast… Continue Reading
Cybercriminals Exploit CrowdStrike Update Mishap to Distribute Remcos RAT Malware post, juli 20, 2024juli 22, 2024 Cybersecurity firm CrowdStrike, which is facing the heat for causing worldwide IT disruptions by pushing out a flawed update to Windows devices, is now warning that threat actors are exploiting the situation to distribute Remcos RAT to its customers in Latin America under the guise of providing a hotfix. The attack chains… Continue Reading
AT&T Paid a Hacker $370,000 to Delete Stolen Phone Records post, juli 14, 2024juli 15, 2024 A security researcher who assisted with the deal says he believes the only copy of the complete dataset of call and text records of “nearly all” AT&T customers has been wiped—but some risks may remain. US telecom giant AT&T, which disclosed Friday that hackers had stolen the call records for tens… Continue Reading