Malware & Threats

CISA Rolls Out New Guidelines to Mitigate AI Risks to US Critical Infrastructure

CISA Rolls Out New Guidelines to Mitigate AI Risks to US Critical Infrastructure 2024-04-29 at 21:02 By Ryan Naraine New CISA guidelines categorize AI risks into three significant types and pushes a four-part mitigation strategy. The post CISA Rolls Out New Guidelines to Mitigate AI Risks to US Critical Infrastructure appeared first on SecurityWeek. This […]

React to this headline:

Loading spinner

CISA Rolls Out New Guidelines to Mitigate AI Risks to US Critical Infrastructure Read More »

Google Says it Blocked 2.28 Million Apps from Google Play Store

Google Says it Blocked 2.28 Million Apps from Google Play Store 2024-04-29 at 20:16 By Ionut Arghire In 2023, Google said it blocked 2.28 million bad applications from being published on Google Play and banned 333,000 developer accounts. The post Google Says it Blocked 2.28 Million Apps from Google Play Store appeared first on SecurityWeek.

React to this headline:

Loading spinner

Google Says it Blocked 2.28 Million Apps from Google Play Store Read More »

Kaiser Permanente Data Breach Impacts 13.4 Million Patients

Kaiser Permanente Data Breach Impacts 13.4 Million Patients 2024-04-29 at 18:31 By Ionut Arghire US healthcare giant is warning millions of current and former patients that their personal information was exposed to third-party advertisers. The post Kaiser Permanente Data Breach Impacts 13.4 Million Patients appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

Kaiser Permanente Data Breach Impacts 13.4 Million Patients Read More »

Over 1,400 CrushFTP Instances Vulnerable to Exploited Zero-Day

Over 1,400 CrushFTP Instances Vulnerable to Exploited Zero-Day 2024-04-26 at 17:16 By Ionut Arghire More than 1,400 CrushFTP servers remain vulnerable to an actively exploited zero-day for which PoC has been published. The post Over 1,400 CrushFTP Instances Vulnerable to Exploited Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

React to this headline:

Loading spinner

Over 1,400 CrushFTP Instances Vulnerable to Exploited Zero-Day Read More »

Powerful ‘Brokewell’ Android Trojan Allows Attackers to Takeover Devices

Powerful ‘Brokewell’ Android Trojan Allows Attackers to Takeover Devices 2024-04-26 at 17:16 By Ionut Arghire A new Android trojan named Brokewell can steal user’s sensitive information and allows attackers to take over devices. The post Powerful ‘Brokewell’ Android Trojan Allows Attackers to Takeover Devices appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

Powerful ‘Brokewell’ Android Trojan Allows Attackers to Takeover Devices Read More »

Self-Spreading PlugX USB Drive Malware Plagues Over 90k IP Addresses

Self-Spreading PlugX USB Drive Malware Plagues Over 90k IP Addresses 2024-04-26 at 17:16 By Ionut Arghire More than 90,000 unique IPs are still infected with a PlugX worm variant that spreads via infected flash drives. The post Self-Spreading PlugX USB Drive Malware Plagues Over 90k IP Addresses appeared first on SecurityWeek. This article is an

React to this headline:

Loading spinner

Self-Spreading PlugX USB Drive Malware Plagues Over 90k IP Addresses Read More »

North Korean Hackers Hijack Antivirus Updates for Malware Delivery

North Korean Hackers Hijack Antivirus Updates for Malware Delivery 2024-04-24 at 18:17 By Ionut Arghire A North Korea-linked threat actor hijacked the update mechanism of eScan antivirus to deploy backdoors and cryptocurrency miners. The post North Korean Hackers Hijack Antivirus Updates for Malware Delivery appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

North Korean Hackers Hijack Antivirus Updates for Malware Delivery Read More »

Threat Actor Uses Multiple Infostealers in Global Campaign

Threat Actor Uses Multiple Infostealers in Global Campaign 2024-04-24 at 16:16 By Ionut Arghire A threat actor tracked as CoralRaider has been using multiple infostealers to harvest credentials from users worldwide. The post Threat Actor Uses Multiple Infostealers in Global Campaign appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

React to this headline:

Loading spinner

Threat Actor Uses Multiple Infostealers in Global Campaign Read More »

Russian Cyberspies Deliver ‘GooseEgg’ Malware to Government Organizations 

Russian Cyberspies Deliver ‘GooseEgg’ Malware to Government Organizations  2024-04-23 at 17:16 By Ionut Arghire Russia-linked APT28 deploys the GooseEgg post-exploitation tool against numerous US and European organizations. The post Russian Cyberspies Deliver ‘GooseEgg’ Malware to Government Organizations  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source React to

React to this headline:

Loading spinner

Russian Cyberspies Deliver ‘GooseEgg’ Malware to Government Organizations  Read More »

Thousands of Palo Alto Firewalls Potentially Impacted by Exploited Vulnerability 

Thousands of Palo Alto Firewalls Potentially Impacted by Exploited Vulnerability  2024-04-22 at 15:16 By Ionut Arghire Shadowserver has identified roughly 6,000 internet-accessible Palo Alto Networks firewalls potentially vulnerable to CVE-2024-3400. The post Thousands of Palo Alto Firewalls Potentially Impacted by Exploited Vulnerability  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

React to this headline:

Loading spinner

Thousands of Palo Alto Firewalls Potentially Impacted by Exploited Vulnerability  Read More »

Threat-Intelligence Startup VulnCheck Closes $8M Seed Financing

Threat-Intelligence Startup VulnCheck Closes $8M Seed Financing 2024-04-19 at 18:01 By SecurityWeek News VulnCheck banks $8 million in early stage capital to build ‘exploit intelligence’ technologies and services. The post Threat-Intelligence Startup VulnCheck Closes $8M Seed Financing appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source React to

React to this headline:

Loading spinner

Threat-Intelligence Startup VulnCheck Closes $8M Seed Financing Read More »

In Other News: OSS Backdooring Attempts, Botnet Operator Charged, Automotive Firm Attack

In Other News: OSS Backdooring Attempts, Botnet Operator Charged, Automotive Firm Attack 2024-04-19 at 17:01 By SecurityWeek News Noteworthy stories that might have slipped under the radar: OpenSSF and OpenJS incidents similar to XZ backdoor, Moldovan botnet operator charged, US automotive company targeted by FIN7. The post In Other News: OSS Backdooring Attempts, Botnet Operator

React to this headline:

Loading spinner

In Other News: OSS Backdooring Attempts, Botnet Operator Charged, Automotive Firm Attack Read More »

Kapeka: A New Backdoor in Sandworm’s Arsenal of Aggression

Kapeka: A New Backdoor in Sandworm’s Arsenal of Aggression 2024-04-17 at 23:16 By Kevin Townsend Kapeka is a new backdoor that may be a new addition to Russia-link Sandworm’s malware arsenal and possibly a successor to GreyEnergy. The post Kapeka: A New Backdoor in Sandworm’s Arsenal of Aggression appeared first on SecurityWeek. This article is

React to this headline:

Loading spinner

Kapeka: A New Backdoor in Sandworm’s Arsenal of Aggression Read More »

Cisco: Multiple VPN, SSH Services Targeted in Mass Brute-Force Attacks

Cisco: Multiple VPN, SSH Services Targeted in Mass Brute-Force Attacks 2024-04-17 at 17:01 By Ionut Arghire Cisco has observed an increase in brute-force attacks targeting web application authentication, VPNs, and SSH services. The post Cisco: Multiple VPN, SSH Services Targeted in Mass Brute-Force Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

Cisco: Multiple VPN, SSH Services Targeted in Mass Brute-Force Attacks Read More »

Exploitation of Palo Alto Firewall Vulnerability Picking Up After PoC Release

Exploitation of Palo Alto Firewall Vulnerability Picking Up After PoC Release 2024-04-17 at 14:31 By Eduard Kovacs Palo Alto Networks firewall vulnerability CVE-2024-3400 increasingly exploited after PoC code has been released.  The post Exploitation of Palo Alto Firewall Vulnerability Picking Up After PoC Release appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

Exploitation of Palo Alto Firewall Vulnerability Picking Up After PoC Release Read More »

Palo Alto Networks Releases Fixes for Firewall Zero-Day as First Attribution Attempts Emerge

Palo Alto Networks Releases Fixes for Firewall Zero-Day as First Attribution Attempts Emerge 2024-04-15 at 14:00 By Eduard Kovacs Palo Alto Networks has started releasing hotfixes for the firewall zero-day CVE-2024-3400, which some have linked to North Korea’s Lazarus.  The post Palo Alto Networks Releases Fixes for Firewall Zero-Day as First Attribution Attempts Emerge appeared

React to this headline:

Loading spinner

Palo Alto Networks Releases Fixes for Firewall Zero-Day as First Attribution Attempts Emerge Read More »

State-Sponsored Hackers Exploit Zero-Day to Backdoor Palo Alto Networks Firewalls

State-Sponsored Hackers Exploit Zero-Day to Backdoor Palo Alto Networks Firewalls 2024-04-12 at 23:46 By Ionut Arghire A state-sponsored threat actor has been exploiting a zero-day in Palo Alto Networks firewalls for the past two weeks. The post State-Sponsored Hackers Exploit Zero-Day to Backdoor Palo Alto Networks Firewalls appeared first on SecurityWeek. This article is an

React to this headline:

Loading spinner

State-Sponsored Hackers Exploit Zero-Day to Backdoor Palo Alto Networks Firewalls Read More »

Threat Actors Manipulate GitHub Search to Deliver Malware

Threat Actors Manipulate GitHub Search to Deliver Malware 2024-04-12 at 14:31 By Ionut Arghire Checkmarx warns of a new attack relying on GitHub search manipulation to deliver malicious code. The post Threat Actors Manipulate GitHub Search to Deliver Malware appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

React to this headline:

Loading spinner

Threat Actors Manipulate GitHub Search to Deliver Malware Read More »

CISA Releases Malware Next-Gen Analysis System for Public Use

CISA Releases Malware Next-Gen Analysis System for Public Use 2024-04-10 at 23:17 By Ryan Naraine CISA’s Malware Next-Gen system is now available for any organization to submit malware samples and other suspicious artifacts for analysis. The post CISA Releases Malware Next-Gen Analysis System for Public Use appeared first on SecurityWeek. This article is an excerpt

React to this headline:

Loading spinner

CISA Releases Malware Next-Gen Analysis System for Public Use Read More »

Scroll to Top