28 Apr Mandiant’s mWISE Event is Where Security’s Best Get Better Mark your calendar for mWISE™, a global gathering where security’s top practitioners come together to tackle the industry’s biggest challenges. It runs from September 18-20, 2023 in Washington, DC […]
27 Apr Android Minecraft clones with 35M downloads infect users with adware A set of 38 Minecraft copycat games on Google Play infected devices with the Android adware ‘HiddenAds’ to stealthily load ads in the background to generate revenue for its operators. […]
27 Apr Google banned 173K developer accounts to block malware, fraud rings Google says it banned 173,000 developer accounts in 2022 to block malware operations and fraud rings from infecting Android users’ devices with malicious apps. […]
27 Apr Linux version of RTM Locker ransomware targets VMware ESXi servers RTM Locker is the latest enterprise-targeting ransomware operation found to be deploying a Linux encryptor that targets virtual machines on VMware ESXi servers. […]
27 Apr New Atomic macOS info-stealing malware targets 50 crypto wallets A new macOS information-stealing malware named ‘Atomic’ (aka ‘AMOS’) is being sold to cybercriminals via private Telegram channels for a subscription of $1,000 per month. […]
26 Apr Tencent QQ users hacked in mysterious malware attack, says ESET The Chinese APT hacking group known as ‘Evasive Panda’ are behind a mysterious attack that distributed the MsgBot malware as part of an automatic update for the Tencent QQ messaging app. […]
26 Apr Google disrupts the CryptBot info-stealing malware operation Google is taking down malware infrastructure linked to the Cryptbot info stealer after suing those using it to infect Google Chrome users and steal their data. […]
26 Apr Thousands of Apache Superset servers exposed to RCE attacks Apache Superset is vulnerable to authentication bypass and remote code execution at default configurations, allowing attackers to potentially access and modify data, harvest credentials, and execute commands. […]
25 Apr VMware fixes critical zero-day exploit chain used at Pwn2Own VMware has released security updates to address zero-day vulnerabilities that could be chained to gain code execution systems running unpatched versions of the company’s Workstation and Fusion software hypervisors. […]
25 Apr New SLP bug can lead to massive 2,200x DDoS amplification attacks A new reflective Denial-of-Service (DoS) amplification vulnerability in the Service Location Protocol (SLP) allows threat actors to launch massive denial-of-service attacks with 2,200X amplification. […]