Source: securityaffairs.com – Author: Pierluigi Paganini The U.S. DoJ announced the seizure of 13 new domains associated with DDoS-for-hire platforms as part of Operation PowerOFF. The...
Author:
New CACTUS ransomware appeared in the threat landscape – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Researchers warn of a new ransomware family called CACTUS that exploits known vulnerabilities in VPN appliances to gain initial access...
Iran-linked APT groups started exploiting Papercut flaw – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Microsoft warns of Iran-linked APT groups that are targeting vulnerable PaperCut MF/NG print management servers. Microsoft warns that Iran-linked APT...
Money Message gang leaked private code signing keys from MSI data breach – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The ransomware gang behind the attack on Taiwanese PC maker MSI leaked the company’s private code signing keys on their...
NextGen Healthcare suffered a data breach that impacted +1 Million individuals – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini NextGen Healthcare suffered a data breach, the security incident exposed the personal information of approximately 1 million individuals. Healthcare solutions...
Western Digital notifies customers of data breach after March cyberattack – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Western Digital is notifying its customers of a data breach that exposed their sensitive personal information, the incident took place...
CERT-UA warns of an ongoing SmokeLoader campaign – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Ukraine’s CERT-UA warns of an ongoing phishing campaign aimed at distributing the SmokeLoader malware in the form of a polyglot...
SEC issued a record award of $279 million to a whistleblower – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The Securities and Exchange Commission (SEC) announced the largest-ever award, approximately $279 million, to a whistleblower. The Securities and Exchange...
San Bernardino County Sheriff’s Department paid a $1.1M ransom – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The San Bernardino County Sheriff’s Department confirmed that it has paid a $1.1-million ransom after the April ransomware attack. The...
Dragon Breath APT uses double-dip DLL sideloading strategy – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini An APT group tracked as Dragon Breath has been observed employing a new DLL sideloading technique. Sophos researchers observed an APT group,...
Security Affairs newsletter Round 418 by Pierluigi Paganini – International edition – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Privacy Overview This website uses cookies to improve your experience while you navigate through the website. Out of these cookies,...
Twitter confirmed that a security incident publicly exposed Circle tweets – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini A security problem caused the public sharing of private tweets sent to Twitter Circles to users outside of the Circle,...
FBI seized other domains used by the shadow eBook library Z-Library – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The FBI disrupted once again the illegal eBook library Z-Library the authorities seized several domains used by the service. The...
WordPress Advanced Custom Fields plugin XSS exposes +2M sites to attacks – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini A reflected cross-site scripting vulnerability is the Advanced Custom Fields plugin for WordPress exposed over 2 million sites to hacking....
Fortinet fixed two severe issues in FortiADC and FortiOS – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Fortinet has addressed a couple of high-severity vulnerabilities impacting FortiADC, FortiOS, and FortiProxy. Fortinet addressed nine security vulnerabilities affecting multiple...
Pro-Russia group NoName took down multiple France sites, including the French Senate one – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The French Senate’s website was taken offline by a DDoS attack launched by the pro-Russian hacker group NoName. The pro-Russia...
North Korea-linked Kimsuky APT uses new recon tool ReconShark – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini North Korea-linked APT group Kimsuky has been observed using a new reconnaissance tool dubbed ReconShark in a recent campaign. SentinelOne researchers observed an...
Fleckpe Android malware totaled +620K downloads via Google Play Store – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Fleckpe is a new Android subscription Trojan that was discovered in the Google Play Store, totaling more than 620,000 downloads...
Cisco EoL SPA112 2-Port Phone Adapters are affected by critical RCE – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Cisco is warning customers of a critical remote code execution vulnerability affecting its EoL SPA112 2-Port Phone Adapters. Cisco is...
Experts devised a new exploit for the PaperCut flaw that can bypass all current detection – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini VulnCheck researchers devised a new exploit for a recently disclosed critical flaw in PaperCut servers that bypasses all current detections....
Facebook warns of a new information-stealing malware dubbed NodeStealer – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Facebook discovered a new information-stealing malware, dubbed ‘NodeStealer,’ that is being distributed on Meta. NodeStealer is a new information-stealing malware...
Russia-linked Sandworm APT uses WinRAR in destructive attacks on Ukraine’s public sector – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini CERT-UA is warning of destructive cyberattacks conducted by the Russia-linked Sandworm APT group against the Ukraine public sector. Russia-linked APT...
City of Dallas shut down IT services after ransomware attack – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini The City of Dallas, Texas, was hit by a ransomware attack that forced it to shut down some of its...
Authorities dismantled the card-checking platform Try2Check – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Authorities dismantled the Try2Check platform, a Card-Checking platform that generated tens of millions of dollars in revenue. The U.S. DoJ...
Passwordless sign-in with passkeys is now available for Google accounts – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Google announced the introduction of the passwordless secure sign-in with Passkeys for Google Accounts on all platforms. Google is rolling...
Hackers are taking advantage of the interest in generative AI to install Malware – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Threat actors are using the promise of generative AI like ChatGPT to deliver malware, Facebook parent Meta warned. Threat actors...
Researchers found DoS flaws in popular BGP implementation – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Vulnerabilities in a software implementation of the Border Gateway Protocol (BGP) that could be weaponized to trigger a DoS condition...
FBI and Ukrainian police seized 9 crypto exchanges used by cybercriminals – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini A joint operation conducted by the FBI and Ukrainian police seized 9 crypto exchanges used by cybercriminal groups for money...
SpecTor operation: 288 individuals arrested in the seizure of marketplace Monopoly Market – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini International law enforcement operation SpecTor resulted in the seizure of an online marketplace and the arrest of nearly 300 people....
The first iPhone Rapid Security Response update released by Apple fails to install – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Apple has released its first Rapid Security Response update, but many iPhone users reported problems during the installation of the...





























