18 Sep APT36 state hackers infect Android devices using YouTube app clones The APT36 hacking group, aka ‘Transparent Tribe,’ has been observed using at least three Android apps that mimic YouTube to infect devices with their signature remote access trojan (RAT), ‘CapraRAT.’ […]
18 Sep Thousands of Juniper devices vulnerable to unauthenticated RCE flaw An estimated 12,000 Juniper SRX firewalls and EX switches are vulnerable to a fileless remote code execution flaw that attackers can exploit without authentication. […]
18 Sep Bumblebee malware returns in new attacks abusing WebDAV folders The malware loader ‘Bumblebee’ has broken its two-month vacation with a new campaign that employs new distribution techniques that abuse 4shared WebDAV services. […]
17 Sep TikTok flooded by ‘Elon Musk’ cryptocurrency giveaway scams TikTok is flooded by a surge of fake cryptocurrency giveaways posted to the video-sharing platform, with almost all of the videos pretending to be themes based on Elon Musk, Tesla, or SpaceX. […]
16 Sep BlackCat ransomware hits Azure Storage with Sphynx encryptor The BlackCat (ALPHV) ransomware gang now uses stolen Microsoft accounts and the recently spotted Sphynx encryptor to encrypt targets’ Azure cloud storage. […]
15 Sep The Week in Ransomware – September 15th 2023 – Russian Roulette This week’s big news is the extortion attacks on the Caesars and MGM Las Vegas casino chains, with one having already paid the ransom and the other still facing operational disruptions. […]
15 Sep Retool blames breach on Google Authenticator MFA cloud sync feature Software company Retool says the accounts of 27 cloud customers were compromised following a targeted and multi-stage social engineering attack. […]
15 Sep Google extends security update support for Chromebooks to 10 years Google has announced the Auto Update Expiration (AUE) date will be extended from 5 years to 10 for all Chromebooks, guaranteeing a decade of monthly security updates. […]
15 Sep ORBCOMM ransomware attack causes trucking fleet management outage Trucking and fleet management solutions provider ORBCOMM has confirmed that a ransomware attack is causing recent service outages that prevent trucking companies from managing their fleets. […]
14 Sep MGM casino’s ESXi servers allegedly encrypted in ransomware attack An affiliate of the BlackCat ransomware group, also known as APLHV, is behind the attack that disrupted MGM Resorts’ operations, forcing the company to shut down IT systems. […]