17 Apr Ex-Conti members and FIN7 devs team up to push new Domino malware Ex-Conti ransomware members have teamed up with the FIN7 threat actors to distribute a new malware family named ‘Domino’ in attacks on corporate networks. […]
17 Apr Hackers abuse Google Command and Control red team tool in attacks The Chinese state-sponsored hacking group APT41 was found abusing the GC2 (Google Command and Control) red teaming tool in data theft attacks against a Taiwanese media and an Italian job search company. […]
17 Apr New QBot email attacks use PDF and WSF combo to install malware QBot malware is now distributed in phishing campaigns utilizing PDFs and Windows Script Files (WSF) to infect Windows devices. […]
17 Apr New Chameleon Android malware mimics bank, govt, and crypto apps A new Android trojan called ‘Chameleon’ has been targeting users in Australia and Poland since the start of the year, mimicking the CoinSpot cryptocurrency exchange, an Australian government agency, and the IKO bank. […]
16 Apr LockBit ransomware encryptors found targeting Mac devices The LockBit ransomware gang has created encryptors targeting Macs for the first time, likely becoming the first major ransomware operation to ever specifically target macOS. […]
16 Apr CISA warns of Android bug exploited by Chinese app to spy on users The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned today of a high-severity Android vulnerability believed to have been exploited by a Chinese e-commerce app Pinduoduo as a zero-day to spy on its users. […]
15 Apr NCR suffers Aloha POS outage after BlackCat ransomware attack NCR is suffering an outage on its Aloha point of sale platform after being hit by an ransomware attack claimed by the BlackCat/ALPHV gang. […]
15 Apr Hackers start abusing Action1 RMM in ransomware attacks Security researchers are warning that cybercriminals are increasingly using the Action1 remote access software for persistence on compromised networks and to execute commands, scripts, and binaries. […]
15 Apr Android malware infiltrates 60 Google Play apps with 100M installs A new Android malware named ‘Goldoson’ has infiltrated the platform’s official app store, Google Play, through 60 apps that collectively have 100 million downloads. […]
14 Apr The Week in Ransomware – April 14th 2023 – A Focus on Stolen Data It has been mostly a quiet week regarding ransomware, with only a few bits of info released on older attacks and some reports released on existing organizations. […]