11 Mar Russian defense firm Rostec shuts down website after DDoS attack Rostec, a Russian state-owned aerospace and defense conglomerate, said its website was taken down today following what it described as a “cyberattack.” […]
10 Mar Corporate website contact forms used to spread BazarBackdoor malware The stealthy BazarBackdoor malware is now being spread via website contact forms rather than typical phishing emails to evade detection by security software. […]
10 Mar Malware disguised as security tool targets Ukraine’s IT Army A new malware distribution campaign has surfaced, taking advantage of the willingness of a large number of people to support Ukraine in the ongoing cyber warfare to infect them with info-stealers. […]
10 Mar REvil ransomware member extradited to U.S. to stand trial for Kaseya attack The U.S. Department of Justice announced that alleged REvil ransomware affiliate, Yaroslav Vasinskyi, was extradited to the United States last week to stand trial for the Kaseya cyberattack. […]
09 Mar CISA updates Conti ransomware alert with nearly 100 domain names The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has updated the alert on Conti ransomware with indicators of compromise (IoCs) consisting of close to 100 domain names used in malicious operations. […]
09 Mar Nearly 30% of critical WordPress plugin bugs don’t get a patch Patchstack, a leader in WordPress security and threat intelligence, has released a whitepaper to present the state of WordPress security in 2021, and the report paints a dire picture. […]
09 Mar Hackers fork open-source reverse tunneling tool for persistence Security experts have spotted an interesting case of a suspected ransomware attack that employed custom-made tools typically used by APT (advanced persistent threat) groups. […]
08 Mar APC UPS zero-day bugs can remotely burn out devices, disable power A set of three critical zero-day vulnerabilities now tracked as TLStorm could let hackers take control of uninterruptible power supply (UPS) devices from APC, a subsidiary of Schneider Electric. […]
08 Mar Android’s March 2022 security updates fix three critical bugs Google has released the March 2022 security updates for Android 10, 11, and 12, addressing three critical severity flaws, one of which affects all devices running the latest version of the mobile OS. […]
07 Mar New Linux bug gives root on all major distros, exploit released A new Linux vulnerability known as ‘Dirty Pipe’ allows local users to gain root privileges through publicly available exploits. […]