North Korean State-Sponsored Hackers Distribute New BeaverTail Malware Variant Through Fake Video Calling Service
North Korean state-sponsored hackers are using an impersonation tactic to distribute a new variant of the BeaverTail malware, known as the BeaverTail info stealer, through a fake video calling service called “MiroTalk,” targeting macOS users for cyber espionage activities.
View full story…
Latest Cybernews
Many SME IT Teams Struggle to Defend Against Cyber-Threats
SME IT teams face resource and staffing limitations, leading to increased vulnerability to cyber-attacks.
View full story…
Malicious npm Packages Found Using Image Files to Hide Backdoor Code
Recent cybersecurity research uncovers hidden backdoor codes in npm packages, enabling remote command execution through image files.
View full story…
The Linux Foundation and OpenSSF Report Urgent Need for Secure Software Development Training Programs
Survey finds lack of security knowledge and skills in professionals, highlighting importance of formalized training programs.
View full story…
Hacktivist Group NullBulge Leaks 1.2-Terabyte Data Dump from Disney’s Internal Slack Channels
NullBulge, a hacktivist group, leaks a massive 1.2-terabyte data dump allegedly obtained from Disney’s internal Slack channels, including messages, files, unreleased projects, code, images, login credentials, and links to internal websites and APIs.
View full story…
Iranian Threat Group MuddyWater Shifts Tactics with New BugSleep Backdoor Deployment
MuddyWater, an Iranian threat group, has shifted to deploying a new custom backdoor called BugSleep for command execution and file transfer in recent attack campaigns targeting countries in the Middle East, with a recent focus on Israel.
View full story…
HUMAN Security Uncovers Konfety Ad Fraud Campaign on Google Play Store
New ad fraud campaign named Konfety revealed by HUMAN Security, involving over 250 Google Play decoy apps concealing malicious code associated with the Russian ad network CaramelAds.
View full story…
Scattered Spider Expands Cyber Arsenal with Qilin Ransomware Variant
Scattered Spider, a highly sophisticated cybercrime group, incorporates the Qilin ransomware variant and RansomHub in their operations, posing a significant threat to organizations worldwide.
View full story…
Void Banshee APT Group Exploits Critical Zero-Day Vulnerability in MHTML Protocol Handler
Security experts uncover that Void Banshee APT group exploits CVE-2024-38112 to deploy Atlantida stealer on victims’ devices.
View full story…
Latest Cybernews
Global Police Operation Dismantles Online Scam Networks in 61 Countries
Operation First Light 2024, funded by China’s Ministry of Public Security and led by Interpol, arrests 3950 suspects and seizes $257 million in assets from various online scams.
View full story…
Russian National Linked to GRU Wanted by US for ‘WhisperGate’ Cyber-Attack
Amin Timovich Stigal, a Russian national linked to the GRU, is wanted by the US for his alleged involvement in the ‘WhisperGate’ Cyber-Attack targeting Ukrainian government computer systems and data.
View full story…
CISA Report Warns of Memory Safety Vulnerabilities in Open Source Projects
A recent joint report by CISA, Australia, and Canada reveals that over half of critical open source software projects analyzed exhibit memory safety vulnerabilities, emphasizing the need for organizations to transition to memory safe languages and adopt secure coding practices.
View full story…
Chinese APT Groups Using Ransomware for Cyber-Espionage Activities Globally
Chinese APT groups like ChamelGang and North Korean threat actors are engaging in cyber-espionage activities globally using ransomware variants like CatB, BestCrypt, and BitLocker to mask their true intentions and potentially gain financial rewards.
View full story…