26 Jan Bitwarden password vaults targeted in Google ads phishing attack Bitwarden and other password managers are being targeted in Google ads phishing campaigns to steal users’ password vault credentials. […]
26 Jan US offers $10M bounty for Hive ransomware links to foreign governments The U.S. Department of State today offered up to $10 million for information that could help link the Hive ransomware group (or other threat actors) with foreign governments. […]
26 Jan New Mimic ransomware abuses ‘Everything’ Windows search tool A new ransomware family named ‘Mimic’ has been spotted in the wild abusing the APIs of a legitimate Windows file search tool called ‘Everything’ to achieve file enumeration. […]
25 Jan Exploit released for critical Windows CryptoAPI spoofing bug Proof of concept exploit code has been released by Akamai researchers for a critical Windows CryptoAPI vulnerability discovered by the NSA and U.K.’s NCSC allowing MD5-collision certificate spoofing. […]
25 Jan CISA: Federal agencies hacked using legitimate remote desktop tools CISA, the NSA, and MS-ISAC warned today in a joint advisory that attackers are increasingly using legitimate remote monitoring and management (RMM) software for malicious purposes. […]
25 Jan Hackers auction alleged source code for League of Legends Threat actors are auctioning the alleged source code for Riot Game’s League of Legends and the Packman anti-cheat software, confirmed to be stolen in a recent hack of the game company’s developer environment. […]
25 Jan Zacks Investment Research data breach affects 820,000 clients Hackers breached Zacks Investment Research (Zacks) company last year and gained access to personal and sensitive information belonging to 820,000 customers. […]
25 Jan Malware exploited critical Realtek SDK bug in millions of attacks Hackers have leveraged a critical remote code execution vulnerability in Realtek Jungle SDK 134 million attacks trying to infect smart devices in the second half of 2022. […]
25 Jan Microsoft 365 outage takes down Teams, Exchange Online, Outlook Microsoft is investigating an ongoing outage impacting multiple Microsoft 365 services after customers have reported experiencing connection issues. […]
24 Jan Ransomware access brokers use Google ads to breach your network A threat actor tracked as DEV-0569 uses Google Ads in widespread, ongoing advertising campaigns to distribute malware, steal victims’ passwords, and ultimately breach networks for ransomware attacks. […]