07 Jan Mortgage firm loanDepot cyberattack impacts IT systems, payment portal U.S. mortgage lender loanDepot has suffered a cyberattack that caused the company to take IT systems offline, preventing online payments against loans. […]
07 Jan Stealthy AsyncRAT malware attacks targets US infrastructure for 11 months A campaign delivering the AsyncRAT malware to select targets has been active for at least the past 11 months, using hundreds of unique loader samples and more than 100 domains. […]
07 Jan KyberSlash attacks put quantum encryption projects at risk Multiple implementations of the Kyber key encapsulation mechanism for quantum-safe encryption, are vulnerable to a set of flaws collectively referred to as KyberSlash, which could allow the recovery of secret keys. […]
06 Jan Google: Malware abusing API is standard token theft, not an API issue Google is downplaying reports of malware abusing an undocumented Google Chrome API to generate new authentication cookies when previously stolen ones have expired. […]
06 Jan X users fed up with constant stream of malicious crypto ads Cybercriminals are abusing X advertisements to promote websites that lead to crypto drainers, fake airdrops, and other scams. […]
05 Jan The Week in Ransomware – January 5th 2024 – Secret decryptors With it being the first week of the New Year and some still away on vacation, it has been slow with ransomware news, attacks, and new information. […]
05 Jan US charged 19 suspects linked to xDedic cybercrime marketplace The U.S. Department of Justice announced the end of a transnational investigation into the dark web xDedic cybercrime marketplace, charging 19 suspects for their involvement in running and using the market’s services. […]
05 Jan BreachForums admin jailed again for using a VPN, unmonitored PC The administrator behind the notorious BreachForums hacking forum has been arrested again for breaking pretrial release conditions, including using an unmonitored computer and a VPN. […]
05 Jan Hackers target Apache RocketMQ servers vulnerable to RCE attacks Security researchers are detecting hundreds of IP addresses on a daily basis that scan or attempt to exploit Apache RocketMQ services vulnerable to a remote command execution flaw identified as CVE-2023-33246 and CVE-2023-37582. […]
05 Jan Web3 security firm CertiK’s X account hacked to push crypto drainer The Twitter/X account of blockchain security firm CertiK was hijacked today to redirect the company’s more than 343,000 followers to a malicious website pushing a cryptocurrency wallet drainer. […]