28 Oct All Windows versions impacted by new LPE zero-day vulnerability A security researcher has disclosed technical details for a Windows zero-day privilege elevation vulnerability and a public proof-of-concept (PoC) exploit that gives SYSTEM privileges under certain conditions. […]
28 Oct WordPress plugin bug impacts 1M sites, allows malicious redirects The OptinMonster plugin is affected by a high-severity flaw that allows unauthorized API access and sensitive information disclosure on roughly a million WordPress sites. […]
28 Oct New AbstractEmu malware roots Android devices, evades detection New Android malware can root infected devices to take complete control and silently tweak system settings, as well as evade detection using code abstraction and anti-emulation checks. […]
28 Oct Ransomware gangs use SEO poisoning to infect visitors Researchers have spotted two campaigns linked to either the REvil ransomware gang or the SolarMarker backdoor that use SEO poisoning to serve payloads to targets. […]
28 Oct German investigators identify REvil ransomware gang core member German investigators have reportedly identified a Russian man named Nikolay K. whom they believe to be one of REvil ransomware gang’s core members, one of the most notorious and successful ransomware groups in recent years. […]
27 Oct Babuk ransomware decryptor released to recover files for free Czech cybersecurity software firm Avast has created and released a decryption tool to help Babuk ransomware victims recover their files for free. […]
27 Oct US bans China Telecom Americas over national security risks The Federal Communications Commission (FCC) has revoked China Telecom Americas’ license to provide telecommunication services within the United States. […]
27 Oct Malicious NPM libraries install ransomware, password stealer Malicious NPM packages pretending to be Roblox libraries are delivering ransomware and password-stealing trojans on unsuspecting users. […]
26 Oct Iranian gas stations out of service after distribution network hacked Gas stations from the National Iranian Oil Products Distribution Company (NIOPDC) have stopped working today due to what appears to be a cyberattack that affected the entire distribution network. […]
26 Oct Police arrest 150 dark web vendors of illegal drugs and guns Law enforcement authorities arrested 150 suspects allegedly involved in selling and buying illicit goods on DarkMarket, the largest illegal marketplace on the dark web when it was taken down in January 2021. […]