18 Mar Hackers claim to breach TransUnion South Africa with ‘Password’ password TransUnion South Africa has disclosed that hackers breached one of their servers using stolen credentials and demanded a extortion demand not to release stolen data. […]
18 Mar DarkHotel hacking campaign targets luxury Macao resorts The South Korean DarkHotel hacking group has been spotted in a new campaign spanning December 2021 through January 2022, targeting luxury hotels in Macao, China. […]
18 Mar Google: Chinese state hackers target Ukraine’s government Google’s Threat Analysis Group (TAG) says the Chinese People’s Liberation Army (PLA) and other Chinese intelligence agencies are trying to get more info on the ongoing Russian war in Ukraine. […]
17 Mar CISA, FBI warn US critical orgs of threats to SATCOM networks CISA and the FBI warned US critical infrastructure organizations of potential threats targeting satellite communication (SATCOM) networks in the US and worldwide. […]
17 Mar New Unix rootkit used to steal ATM banking data Threat analysts following the activity of LightBasin, a financially motivated group of hackers, report the discovery of a previously unknown Unix rootkit that is used to steal ATM banking data and conduct fraudulent transactions. […]
17 Mar Google exposes tactics of a Conti ransomware access broker Google’s Threat Analysis Group has exposed the operations of a threat actor group dubbed “EXOTIC LILY,” an initial access broker linked to the Conti and Diavol ransomware operations. […]
16 Mar Unsecured Microsoft SQL, MySQL servers hit by Gh0stCringe malware Hackers target poorly secured Microsoft SQL and MySQL database servers to deploy the Gh0stCringe remote access trojans on vulnerable devices. […]
16 Mar SolarWinds warns of attacks targeting Web Help Desk instances SolarWinds warned customers of attacks targeting Internet-exposed Web Help Desk (WHD) instances and advised removing them from publicly accessible infrastructure (likely to prevent the exploitation of a potential security flaw). […]
16 Mar Microsoft Defender tags Office updates as ransomware activity Windows admins were hit today by a wave of Microsoft Defender for Endpoint false positives where Office updates were tagged as malicious in alerts pointing to ransomware behavior detected on their systems. […]
16 Mar Hundreds of GoDaddy-hosted sites backdoored in a single day Internet security analysts have spotted a spike in backdoor infections on WordPress websites hosted on GoDaddy’s Managed WordPress service, all featuring an identical backdoor payload. […]