MOONSHINE Kit Exploiting Android Messaging Apps Flaw To Inject Backdoor

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated exploit kit named MOONSHINE has been actively targeting Android messaging apps to implant backdoors on users’ devices. This toolkit, under continuous monitoring since 2019, has recently been found to have an upgraded version with enhanced capabilities and protections …

What is Host-based Intrusion Detection System?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Organizations face a myriad of challenges in protecting their digital assets. One critical component of a robust security strategy is the implementation of Intrusion Detection Systems (IDS). Among these, Host-Based Intrusion Detection Systems (HIDS) play a crucial role in monitoring, …

CISA Warns Of CyberPanel, North Grid, ProjectSend & Zyxel Firewalls Flaws Exploited In Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert regarding four critical vulnerabilities actively exploited in the wild, urging organizations to take immediate action to mitigate risks. These flaws, affecting CyberPanel, North Grid Proself, ProjectSend, and Zyxel …

Thinkware Cloud APK Vulnerability Let Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw has been uncovered recently in the Thinkware Cloud APK version 4.3.46, Thinkware’s cloud-based dashcam services. The vulnerability, identified as CVE-2024-53614, allows malicious actors to access sensitive data and execute arbitrary commands with elevated privileges, potentially compromising …

Beware Of New HR Payroll Phishing Attack Targeting Numerous Employees

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign dubbed “Payroll Pirates” is currently targeting employees of various high-profile organizations. While the targets include California Employment Development Department (EDD), Kaiser Permanente, Macy’s, New York Life, and Roche. This ongoing malicious operation aims to carry out …

Secret Blizzard Hackers Attack Windows Infrastructure Using Multiple Hacking Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a recent joint report by Microsoft Threat Intelligence and Black Lotus Labs, new insights have emerged about “Secret Blizzard,” a sophisticated Russian nation-state cyber actor attacking windows infrastructure using a variety of hacking tools. Known for its stealthy espionage …

Chinese Salt Typhoon Hacked 8+ Telecoms To Stole U.S. Citizens Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Chinese hacking campaign, codenamed “Salt Typhoon” by Microsoft, has infiltrated more than 8 American telecommunications companies, stealing vast amounts of U.S. citizens’ phone data. Officials describe it as one of the largest intelligence compromises in U.S. history. The operation, …

Isreali NSO Group’s Pegasus Spyware Detected in New Mobile Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers from iVerify have revealed widespread new infections of the Pegasus spyware, developed by NSO Group (dubbed “Rainbow Ronin”), showing that spyware targets not only activists and journalists but also professionals and civilians. The company’s newly launched Mobile Threat …

Deloitte Hacked – Brain Cipher Ransomware Group Allegedly Stolen 1 TB of Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Notorious ransomware group Brain Cipher has claimed to have breacked Deloitte UK, allegedly exfiltrating over 1 terabyte of sensitive data from the professional services giant. Brain Cipher is a ransomware group that emerged in June 2024, quickly gaining notoriety for …

Operation Destabilise, Authorities Dismateled Cybercriminals Money Laundering Network

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a major international operation codenamed “Operation Destabilise,” law enforcement agencies have successfully dismantled sophisticated Russian money laundering networks that served cybercriminals, drug traffickers, and sanctioned Russian elites worldwide. The operation, led by the National Crime Agency (NCA), exposed two …