Shadow Attacks Let Attackers Replace Content in Digitally Signed PDFs

Blog WriterThe Hacker News - Original news source is thehackernews.com

Researchers have demonstrated a novel class of attacks that could allow a bad actor to potentially circumvent existing countermeasures and break the integrity protection of digitally signed PDF documents. Called …

Hackers Exploit Accellion Zero-Days in Recent Data Theft and Extortion Attacks

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers on Monday tied a string of attacks targeting Accellion File Transfer Appliance (FTA) servers over the past two months to data theft and extortion campaign orchestrated by a cybercrime group …

How to Fight Business Email Compromise (BEC) with Email Authentication?

Blog WriterThe Hacker News - Original news source is thehackernews.com

An ever-evolving and rampant form of cybercrime that targets emails as the potential medium to conduct fraud is known as Business Email Compromise. Targeting commercial, government as well as non-profit …

Chinese Hackers Had Access to a U.S. Hacking Tool Years Before It Was Leaked Online

Blog WriterThe Hacker News - Original news source is thehackernews.com

On August 13, 2016, a hacking unit calling itself “The Shadow Brokers” announced that it had stolen malware tools and exploits used by the Equation Group, a sophisticated threat actor …

New ‘Silver Sparrow’ Malware Infected Nearly 30,000 Apple Macs

Blog WriterThe Hacker News - Original news source is thehackernews.com

Days after the first malware targeting Apple M1 chips was discovered in the wild, researchers have disclosed yet another previously undetected piece of malicious software that was found in about 30,000 Macs …

New Hack Lets Attackers Bypass MasterCard PIN by Using Them As Visa Card

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers have disclosed a novel attack that could allow criminals to trick a point of sale terminal into transacting with a victim’s Mastercard contactless card while believing it to be a …

Masslogger Trojan Upgraded to Steal All Your Outlook, Chrome Credentials

Blog WriterThe Hacker News - Original news source is thehackernews.com

A credential stealer infamous for targeting Windows systems has resurfaced in a new phishing campaign that aims to steal credentials from Microsoft Outlook, Google Chrome, and instant messenger apps. Primarily …

SolarWinds Hackers Stole Some Source Code for Microsoft Azure, Exchange, Intune

Blog WriterThe Hacker News - Original news source is thehackernews.com

Microsoft on Thursday said it concluded its probe into the SolarWinds hack, finding that the attackers stole some source code but confirmed there’s no evidence that they abused its internal …