The Hacker News

Syndikovat obsah
The Hacker News has been internationally recognized as a leading news source dedicated to promoting awareness for security experts and [email protected]
Aktualizace: 7 min 54 sek zpět

CL0P's Ransomware Rampage - Security Measures for 2024

9 Duben, 2024 - 13:24
2023 CL0P Growth  Emerging in early 2019, CL0P was first introduced as a more advanced version of its predecessor the ‘CryptoMix’ ransomware, brought about by its owner CL0P ransomware, a cybercrime organisation. Over the years the group remained active with significant campaigns throughout 2020 to 2022. But in 2023 the CL0P ransomware gang took itself to new heights and became one of the
Kategorie: Hacking & Security

CL0P's Ransomware Rampage - Security Measures for 2024

9 Duben, 2024 - 13:24
2023 CL0P Growth  Emerging in early 2019, CL0P was first introduced as a more advanced version of its predecessor the ‘CryptoMix’ ransomware, brought about by its owner CL0P ransomware, a cybercrime organisation. Over the years the group remained active with significant campaigns throughout 2020 to 2022. But in 2023 the CL0P ransomware gang took itself to new heights and became one of the The Hacker Newshttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Attackers Using Obfuscation Tools to Deliver Multi-Stage Malware via Invoice Phishing

9 Duben, 2024 - 09:24
Cybersecurity researchers have discovered an intricate multi-stage attack that leverages invoice-themed phishing decoys to deliver a wide range of malware such as Venom RAT, Remcos RAT, XWorm, NanoCore RAT, and a stealer that targets crypto wallets. The email messages come with Scalable Vector Graphics (SVG) file attachments that, when clicked, activate the infection sequence, Fortinet
Kategorie: Hacking & Security

Attackers Using Obfuscation Tools to Deliver Multi-Stage Malware via Invoice Phishing

9 Duben, 2024 - 09:24
Cybersecurity researchers have discovered an intricate multi-stage attack that leverages invoice-themed phishing decoys to deliver a wide range of malware such as Venom RAT, Remcos RAT, XWorm, NanoCore RAT, and a stealer that targets crypto wallets. The email messages come with Scalable Vector Graphics (SVG) file attachments that, when clicked, activate the infection sequence, Fortinet Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Critical Flaws Leave 92,000 D-Link NAS Devices Vulnerable to Malware Attacks

9 Duben, 2024 - 07:46
Threat actors are actively scanning and exploiting a pair of security flaws that are said to affect as many as 92,000 internet-exposed D-Link network-attached storage (NAS) devices. Tracked as CVE-2024-3272 (CVSS score: 9.8) and CVE-2024-3273 (CVSS score: 7.3), the vulnerabilities impact legacy D-Link products that have reached end-of-life (EoL) status. D-Link, in
Kategorie: Hacking & Security

Critical Flaws Leave 92,000 D-Link NAS Devices Vulnerable to Malware Attacks

9 Duben, 2024 - 07:46
Threat actors are actively scanning and exploiting a pair of security flaws that are said to affect as many as 92,000 internet-exposed D-Link network-attached storage (NAS) devices. Tracked as CVE-2024-3272 (CVSS score: 9.8) and CVE-2024-3273 (CVSS score: 7.3), the vulnerabilities impact legacy D-Link products that have reached end-of-life (EoL) status. D-Link, in Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Embracing the Cloud: Revolutionizing Privileged Access Management with One Identity Cloud PAM Essentials

9 Duben, 2024 - 07:30
As cyber threats loom around every corner and privileged accounts become prime targets, the significance of implementing a robust Privileged Access Management (PAM) solution can't be overstated. With organizations increasingly migrating to cloud environments, the PAM Solution Market is experiencing a transformative shift toward cloud-based offerings. One Identity PAM Essentials stands
Kategorie: Hacking & Security

Embracing the Cloud: Revolutionizing Privileged Access Management with One Identity Cloud PAM Essentials

9 Duben, 2024 - 07:30
As cyber threats loom around every corner and privileged accounts become prime targets, the significance of implementing a robust Privileged Access Management (PAM) solution can't be overstated. With organizations increasingly migrating to cloud environments, the PAM Solution Market is experiencing a transformative shift toward cloud-based offerings. One Identity PAM Essentials stands The Hacker Newshttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Google Chrome Adds V8 Sandbox - A New Defense Against Browser Attacks

8 Duben, 2024 - 15:51
Google has announced support for what's called a V8 Sandbox in the Chrome web browser in an effort to address memory corruption issues. The sandbox, according to V8 security technical lead Samuel Groß, aims to prevent "memory corruption in V8 from spreading within the host process." The search behemoth has described V8 Sandbox as a lightweight, in-process sandbox
Kategorie: Hacking & Security

Google Chrome Adds V8 Sandbox - A New Defense Against Browser Attacks

8 Duben, 2024 - 15:51
Google has announced support for what's called a V8 Sandbox in the Chrome web browser in an effort to address memory corruption issues. The sandbox, according to V8 security technical lead Samuel Groß, aims to prevent "memory corruption in V8 from spreading within the host process." The search behemoth has described V8 Sandbox as a lightweight, in-process sandbox Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Watch Out for 'Latrodectus' - This Malware Could Be In Your Inbox

8 Duben, 2024 - 13:29
Threat hunters have discovered a new malware called Latrodectus that has been distributed as part of email phishing campaigns since at least late November 2023. "Latrodectus is an up-and-coming downloader with various sandbox evasion functionality," researchers from Proofpoint and Team Cymru said in a joint analysis published last week, adding it's designed to retrieve
Kategorie: Hacking & Security

Watch Out for 'Latrodectus' - This Malware Could Be In Your Inbox

8 Duben, 2024 - 13:29
Threat hunters have discovered a new malware called Latrodectus that has been distributed as part of email phishing campaigns since at least late November 2023. "Latrodectus is an up-and-coming downloader with various sandbox evasion functionality," researchers from Proofpoint and Team Cymru said in a joint analysis published last week, adding it's designed to retrieve Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

The Drop in Ransomware Attacks in 2024 and What it Means

8 Duben, 2024 - 13:23
The ransomware industry surged in 2023 as it saw an alarming 55.5% increase in victims worldwide, reaching a staggering 5,070. But 2024 is starting off showing a very different picture. While the numbers skyrocketed in Q4 2023 with 1309 cases, in Q1 2024, the ransomware industry was down to 1,048 cases. This is a 22% decrease in ransomware attacks compared to Q4 2023. Figure
Kategorie: Hacking & Security

The Drop in Ransomware Attacks in 2024 and What it Means

8 Duben, 2024 - 13:23
The ransomware industry surged in 2023 as it saw an alarming 55.5% increase in victims worldwide, reaching a staggering 5,070. But 2024 is starting off showing a very different picture. While the numbers skyrocketed in Q4 2023 with 1309 cases, in Q1 2024, the ransomware industry was down to 1,048 cases. This is a 22% decrease in ransomware attacks compared to Q4 2023. Figure The Hacker Newshttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Cybercriminals Targeting Latin America with Sophisticated Phishing Scheme

8 Duben, 2024 - 10:36
A new phishing campaign has set its eyes on the Latin American region to deliver malicious payloads to Windows systems. "The phishing email contained a ZIP file attachment that when extracted reveals an HTML file that leads to a malicious file download posing as an invoice," Trustwave SpiderLabs researcher Karla Agregado said. The email message, the company said, originates from an email
Kategorie: Hacking & Security

Cybercriminals Targeting Latin America with Sophisticated Phishing Scheme

8 Duben, 2024 - 10:36
A new phishing campaign has set its eyes on the Latin American region to deliver malicious payloads to Windows systems. "The phishing email contained a ZIP file attachment that when extracted reveals an HTML file that leads to a malicious file download posing as an invoice," Trustwave SpiderLabs researcher Karla Agregado said. The email message, the company said, originates from an email Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Google Sues App Developers Over Fake Crypto Investment App Scam

8 Duben, 2024 - 07:25
Google has filed a lawsuit in the U.S. against two app developers for allegedly engaging in an "international online consumer investment fraud scheme" that tricked users into downloading bogus Android apps from the Google Play Store and other sources and stealing their funds under the guise of promising higher returns. The individuals in question are Yunfeng Sun (aka Alphonse Sun) and Hongnam
Kategorie: Hacking & Security

Google Sues App Developers Over Fake Crypto Investment App Scam

8 Duben, 2024 - 07:25
Google has filed a lawsuit in the U.S. against two app developers for allegedly engaging in an "international online consumer investment fraud scheme" that tricked users into downloading bogus Android apps from the Google Play Store and other sources and stealing their funds under the guise of promising higher returns. The individuals in question are Yunfeng Sun (aka Alphonse Sun) and Hongnam Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Hackers Exploit Magento Bug to Steal Payment Data from E-commerce Websites

6 Duben, 2024 - 11:43
Threat actors have been found exploiting a critical flaw in Magento to inject a persistent backdoor into e-commerce websites. The attack leverages CVE-2024-20720 (CVSS score: 9.1), which has been described by Adobe as a case of "improper neutralization of special elements" that could pave the way for arbitrary code execution. It was addressed by the company as part of
Kategorie: Hacking & Security

Hackers Exploit Magento Bug to Steal Payment Data from E-commerce Websites

6 Duben, 2024 - 11:43
Threat actors have been found exploiting a critical flaw in Magento to inject a persistent backdoor into e-commerce websites. The attack leverages CVE-2024-20720 (CVSS score: 9.1), which has been described by Adobe as a case of "improper neutralization of special elements" that could pave the way for arbitrary code execution. It was addressed by the company as part of Newsroomhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security