02 Jun Ransomware gang now hacks corporate websites to show ransom notes A ransomware gang is taking extortion to a new level by publicly hacking corporate websites to publicly display ransom notes. […]
02 Jun Clipminer malware gang stole $1.7M by hijacking crypto payments Threat analysts have discovered a large operation of a new cryptocurrency mining malware called Clipminer that brought its operators at least $1.7 million from transaction hijacking. […]
02 Jun Foxconn confirms ransomware attack disrupted production in Mexico Foxconn electronics manufacturer has confirmed that one of its Mexico-based production plants has been impacted by a ransomware attack in late May. […]
01 Jun New Windows Search zero-day added to Microsoft protocol nightmare A new Windows Search zero-day vulnerability can be used to automatically open a search window containing remotely-hosted malware executables simply by launching a Word document. […]
01 Jun Hundreds of Elasticsearch databases targeted in ransom attacks A campaign targeting poorly secured Elasticsearch databases has deleted their contents and dropped ransom notes on 450 instances, demanding a payment of $620 to give them back their indexes, totaling a demand of $279,000. […]
01 Jun Ransomware attacks need less than four days to encrypt systems The duration of ransomware attacks in 2021 averaged 92.5 hours, measured from initial network access to payload deployment. In 2020, ransomware actors spent an average of 230 hours to complete their attacks and 1637.6 hours in 2019. […]
01 Jun Telegram’s blogging platform abused in phishing attacks Telegram’s anonymous blogging platform, Telegraph, is being actively exploited by phishing actors who take advantage of the platform’s lax policies to set up interim landing pages that lead to the theft of account credentials. […]
31 May Hackers steal WhatsApp accounts using call forwarding trick There’s a trick that allows attackers to hijack a victim’s WhatsApp account and gain access to personal messages and contact list. […]
31 May Windows MSDT zero-day now exploited by Chinese APT hackers Chinese-linked threat actors are now actively exploiting a Microsoft Office zero-day vulnerability (known as ‘Follina’) to execute malicious code remotely on Windows systems. […]
31 May Over 3.6 million MySQL servers found exposed on the Internet Over 3.6 million MySQL servers are publicly exposed on the Internet and responding to queries, making them an attractive target to hackers and extortionists. […]