Malware & Threats

Adobe Calls Urgent Attention to Critical ColdFusion Flaws

Adobe Calls Urgent Attention to Critical ColdFusion Flaws 2025-04-08 at 21:08 By Ryan Naraine The Adobe Patch Tuesday rollout covers 54 vulnerabilities, including code execution issues in the oft-targeted Adobe ColdFusion software. The post Adobe Calls Urgent Attention to Critical ColdFusion Flaws appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Adobe Calls Urgent Attention to Critical ColdFusion Flaws Read More »

Octane Raises $6.75M for Smart Contract Security Tech

Octane Raises $6.75M for Smart Contract Security Tech 2025-04-08 at 19:05 By SecurityWeek News San Francisco smart contract security startup closes a $6.75 million seed funding round led by Archetype and Winklevoss Capital. The post Octane Raises $6.75M for Smart Contract Security Tech appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Octane Raises $6.75M for Smart Contract Security Tech Read More »

Threat Actors Setting Up Persistent Access to Hosts Hacked in CrushFTP Attacks

Threat Actors Setting Up Persistent Access to Hosts Hacked in CrushFTP Attacks 2025-04-08 at 12:06 By Eduard Kovacs Huntress has shared details on the post-exploitation activities of threat actors targeting the recent CrushFTP vulnerability. The post Threat Actors Setting Up Persistent Access to Hosts Hacked in CrushFTP Attacks appeared first on SecurityWeek. This article is

Threat Actors Setting Up Persistent Access to Hosts Hacked in CrushFTP Attacks Read More »

US, Allies Warn of Threat Actors Using ‘Fast Flux’ to Hide Server Locations

US, Allies Warn of Threat Actors Using ‘Fast Flux’ to Hide Server Locations 2025-04-04 at 15:29 By Ionut Arghire US and allied countries warn of threat actors using the “fast flux” technique to change DNS records and hide malicious servers’ locations. The post US, Allies Warn of Threat Actors Using ‘Fast Flux’ to Hide Server

US, Allies Warn of Threat Actors Using ‘Fast Flux’ to Hide Server Locations Read More »

Chinese APT Pounces on Misdiagnosed RCE in Ivanti VPN Appliances 

Chinese APT Pounces on Misdiagnosed RCE in Ivanti VPN Appliances  2025-04-03 at 20:17 By Ryan Naraine Ivanti misdiagnoses a remote code execution vulnerability and Mandiant reports that Chinese hackers are launching in-the-wild exploits. The post Chinese APT Pounces on Misdiagnosed RCE in Ivanti VPN Appliances  appeared first on SecurityWeek. This article is an excerpt from

Chinese APT Pounces on Misdiagnosed RCE in Ivanti VPN Appliances  Read More »

Undocumented Remote Access Backdoor Found in Unitree Go1 Robot Dog

Undocumented Remote Access Backdoor Found in Unitree Go1 Robot Dog 2025-04-01 at 22:17 By Ryan Naraine The undocumented tunnel allows remote control all robot dogs on the tunnel network and use the vision cameras to see through their eyes. The post Undocumented Remote Access Backdoor Found in Unitree Go1 Robot Dog appeared first on SecurityWeek.

Undocumented Remote Access Backdoor Found in Unitree Go1 Robot Dog Read More »

Threat Actors Deploy WordPress Malware in ‘mu-plugins’ Directory

Threat Actors Deploy WordPress Malware in ‘mu-plugins’ Directory 2025-03-31 at 18:07 By Ionut Arghire Sucuri has discovered multiple malware families deployed in the WordPress mu-plugins directory to evade routine security checks. The post Threat Actors Deploy WordPress Malware in ‘mu-plugins’ Directory appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Threat Actors Deploy WordPress Malware in ‘mu-plugins’ Directory Read More »

‘Crocodilus’ Android Banking Trojan Allows Device Takeover, Data Theft

‘Crocodilus’ Android Banking Trojan Allows Device Takeover, Data Theft 2025-03-31 at 14:05 By Ionut Arghire The newly identified Android banking trojan Crocodilus takes over devices, enabling overlay attacks, remote control, and keylogging. The post ‘Crocodilus’ Android Banking Trojan Allows Device Takeover, Data Theft appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

‘Crocodilus’ Android Banking Trojan Allows Device Takeover, Data Theft Read More »

CISA Analyzes Malware Used in Ivanti Zero-Day Attacks

CISA Analyzes Malware Used in Ivanti Zero-Day Attacks 2025-03-31 at 13:37 By Ionut Arghire CISA has published its analysis of Resurge, a SpawnChimera malware variant used in attacks targeting a recent Ivanti Connect Secure zero-day. The post CISA Analyzes Malware Used in Ivanti Zero-Day Attacks appeared first on SecurityWeek. This article is an excerpt from

CISA Analyzes Malware Used in Ivanti Zero-Day Attacks Read More »

9-Year-Old NPM Crypto Package Hijacked for Information Theft

9-Year-Old NPM Crypto Package Hijacked for Information Theft 2025-03-28 at 14:32 By Ionut Arghire Nearly a dozen crypto packages on NPM, including one published 9 years ago, have been hijacked to deliver infostealers. The post 9-Year-Old NPM Crypto Package Hijacked for Information Theft appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

9-Year-Old NPM Crypto Package Hijacked for Information Theft Read More »

Fresh Grandoreiro Banking Trojan Campaigns Target Latin America, Europe

Fresh Grandoreiro Banking Trojan Campaigns Target Latin America, Europe 2025-03-28 at 12:33 By Ionut Arghire The Grandoreiro banking trojan has reemerged in new campaigns targeting users in Latin America and Europe. The post Fresh Grandoreiro Banking Trojan Campaigns Target Latin America, Europe appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Fresh Grandoreiro Banking Trojan Campaigns Target Latin America, Europe Read More »

Russian Ransomware Gang Exploited Windows Zero-Day Before Patch

Russian Ransomware Gang Exploited Windows Zero-Day Before Patch 2025-03-26 at 18:26 By Ryan Naraine Exploitation of Windows MMC zero-day is being pinned on a ransomware gang known as EncryptHub (an affiliate of RansomHub) The post Russian Ransomware Gang Exploited Windows Zero-Day Before Patch appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Russian Ransomware Gang Exploited Windows Zero-Day Before Patch Read More »

AMTSO Releases Sandbox Evaluation Framework

AMTSO Releases Sandbox Evaluation Framework 2025-03-26 at 17:31 By Eduard Kovacs AMTSO has developed a Sandbox Evaluation Framework to standardize the testing of malware analysis solutions.  The post AMTSO Releases Sandbox Evaluation Framework appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

AMTSO Releases Sandbox Evaluation Framework Read More »

macOS Users Warned of New Versions of ReaderUpdate Malware

macOS Users Warned of New Versions of ReaderUpdate Malware 2025-03-26 at 13:51 By Ionut Arghire macOS users are targeted with multiple versions of the ReaderUpdate malware written in Crystal, Nim, Rust, and Go programming languages. The post macOS Users Warned of New Versions of ReaderUpdate Malware appeared first on SecurityWeek. This article is an excerpt

macOS Users Warned of New Versions of ReaderUpdate Malware Read More »

Chinese APT Weaver Ant Targeting Telecom Providers in Asia

Chinese APT Weaver Ant Targeting Telecom Providers in Asia 2025-03-25 at 13:54 By Ionut Arghire Weaver Ant, a cyberespionage-focused APT operating out of China, is targeting telecom providers for persistent access. The post Chinese APT Weaver Ant Targeting Telecom Providers in Asia appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Chinese APT Weaver Ant Targeting Telecom Providers in Asia Read More »

Medusa Ransomware Uses Malicious Driver to Disable Security Tools

Medusa Ransomware Uses Malicious Driver to Disable Security Tools 2025-03-24 at 13:46 By Ionut Arghire The Medusa ransomware relies on a malicious Windows driver to disable the security tools running on the infected systems. The post Medusa Ransomware Uses Malicious Driver to Disable Security Tools appeared first on SecurityWeek. This article is an excerpt from

Medusa Ransomware Uses Malicious Driver to Disable Security Tools Read More »

300 Malicious ‘Vapor’ Apps Hosted on Google Play Had 60 Million Downloads

300 Malicious ‘Vapor’ Apps Hosted on Google Play Had 60 Million Downloads 2025-03-20 at 12:30 By Ionut Arghire Over 300 malicious applications displaying intrusive full-screen interstitial video ads amassed more than 60 million downloads on Google Play. The post 300 Malicious ‘Vapor’ Apps Hosted on Google Play Had 60 Million Downloads appeared first on SecurityWeek.

300 Malicious ‘Vapor’ Apps Hosted on Google Play Had 60 Million Downloads Read More »

Chinese Hacking Group MirrorFace Targeting Europe

Chinese Hacking Group MirrorFace Targeting Europe 2025-03-19 at 15:05 By Ionut Arghire Chinese hacking group MirrorFace has targeted a Central European diplomatic institute with the Anel backdoor and AsyncRAT. The post Chinese Hacking Group MirrorFace Targeting Europe appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Chinese Hacking Group MirrorFace Targeting Europe Read More »

Microsoft Warns of New StilachiRAT Malware

Microsoft Warns of New StilachiRAT Malware 2025-03-19 at 12:00 By Eduard Kovacs Microsoft has shared details on StilachiRAT, an evasive and persistent piece of malware that facilitates sensitive data theft. The post Microsoft Warns of New StilachiRAT Malware appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft Warns of New StilachiRAT Malware Read More »

11 State-Sponsored APTs Exploiting LNK Files for Espionage, Data Theft

11 State-Sponsored APTs Exploiting LNK Files for Espionage, Data Theft 2025-03-18 at 16:02 By Eduard Kovacs ZDI has uncovered 1,000 malicious .lnk files used by state-sponsored and cybercrime threat actors to execute malicious commands. The post 11 State-Sponsored APTs Exploiting LNK Files for Espionage, Data Theft appeared first on SecurityWeek. This article is an excerpt

11 State-Sponsored APTs Exploiting LNK Files for Espionage, Data Theft Read More »

Scroll to Top