New HeartCrypt Packer-as-a-Service (PaaS) Protecting Malware From Antivirus

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new packer-as-a-service (PaaS) called HeartCrypt has emerged as a powerful tool for malware operators to evade antivirus detection. Developed in July 2023 and launched in February 2024, HeartCrypt has quickly gained traction in the cybercrime underground, being used to …

Yahoo Terminates Their Entire Red Team From The “Team Paranoids”

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Yahoo has laid off around 25% of its cybersecurity team, known as “The Paranoids,” over the past year, according to information obtained by Cyber Security News. The cuts involved losing 40 to 50 employees from the team, which initially comprised approximately …

Hackers Scanning RDP Services Especially Port 1098 For Exploitation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

There is a significant surge in scanning activities targeting Remote Desktop Protocol (RDP) services, with a particular focus on port 1098/TCP. Over the past two weeks, honeypot sensors have detected an alarming increase in these scans, with up to 740,000 …

300,000+ Prometheus Monitoring Servers Exposed To DoS Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over 336,000 Prometheus servers and Exporters were exposed to DoS attacks, allowing attackers to obtain sensitive information such as credentials and API keys.    Prometheus is an open-source monitoring and alerting toolset that has become an essential component of modern monitoring …

Hackers Weaponize Google Drive Links to Breach Corporate Networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated attack campaign targeting organizations in Japan and other East Asian countries. The threat actor, identified as APT-C-60, is employing a clever social engineering tactic that exploits job application processes to infiltrate corporate networks and deploy malware. The attack, …

New Stealthy Linux Malware PUMAKIT With Unique Privilege Escalation Methods

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers at Elastic Security Labs have uncovered a sophisticated Linux malware dubbed PUMAKIT, which employs advanced stealth techniques and unique privilege escalation methods to maintain persistence on infected systems. PUMAKIT’s multi-stage architecture consists of a dropper, two memory-resident executables, …

Critical Dell Security Vulnerabilities Let Attackers Compromise Affected Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Dell has recently disclosed two critical security vulnerabilities affecting a wide range of its products, potentially exposing numerous systems to serious risks. The vulnerabilities, identified as CVE-2024-37143 and CVE-2024-37144, impact various versions of Dell PowerFlex appliances, racks, custom nodes, InsightIQ, …

Citrix NetScaler Devices Under Attack, Brute-force Attacks Exploiting Zero-days

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant surge in brute-force attacks targeting Citrix NetScaler devices across multiple organizations. The attacks, primarily originating from a Hong Kong-based cloud provider, are exploiting misconfigured and outdated systems, coinciding with recent critical vulnerability disclosures affecting Citrix NetScaler. The attacks …

14 North Korean IT Workers Charged, US to Offer $5 Million Rewards for Info

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A federal court in St. Louis, Missouri, has indicted 14 North Korean nationals in a sophisticated scheme involving IT workers who allegedly defrauded US companies and funneled millions of dollars to North Korea’s weapons programs. The indictment, unsealed on Wednesday, …

Bitcoin ATM Operator Hacked, 58,000 Users’ Personal Data Compromised

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Byte Federal, one of the largest Bitcoin ATM operators in the United States, has reported a significant data breach affecting approximately 58,000 customers. In a recent security incident, Byte Federal, a prominent provider of financial services, disclosed that it experienced …