Hackers Abusing Google Ads To Deliver Fakebat Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a resurgence of the Fakebat malware loader being distributed through malicious Google Ads. After a months-long break, Fakebat has resurfaced, focusing on users who are looking for popular productivity software. Malwarebytes detected a malicious Google ad …

Palo Alto Networks Warns Of Critical PAN-OS Remote Code Execution Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Palo Alto Networks has issued an urgent warning about a potential critical remote code execution (RCE) vulnerability affecting the management interface of their PAN-OS next-generation firewalls. The cybersecurity company has advised customers to take immediate protective measures while investigating the …

Microsoft Bookings Flaw Let Hackers Create Impersonate User Acccounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw in Microsoft Bookings has been uncovered. This flaw, inherent in the default configuration of Microsoft Bookings, potentially allows attackers to create unauthorized Entra (formerly Azure AD) accounts and obtain fraudulent certificates. This vulnerability poses significant risks …

Hackers Exploiting Veeam RCE Flaw to Deploy New Frag Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are actively exploiting a critical vulnerability in Veeam Backup & Replication software to deploy a new ransomware strain called “Frag.” The vulnerability, tracked as CVE-2024-40711, allows unauthenticated remote code execution and has a severity score of 9.8 out …

FBI: Spike in Hacked Police Emails, Fake Subpoenas

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

The Federal Bureau of Investigation (FBI) is urging police departments and governments worldwide to beef up security around their email systems, citing a recent increase in cybercriminal services that use hacked police email accounts to send unauthorized subpoenas and customer …

Hackers Attacking macOS Users with New Multi-Stage Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korean threat actors, likely associated with BlueNoroff, have launched multi-stage malware attacks targeting cryptocurrency businesses, expanding their toolkit to include RustDoor/ThiefBucket and RustBucket campaigns.  Hidden Risk, a DPRK-linked threat actor, employed a novel persistence technique involving Zsh configuration file …

Beware of Fake Copyright Claims that Deliver Rhadamanthys Stealer Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have launched a large-scale phishing attack using a new variant of Rhadamanthys Stealer, dubbed CopyRh(ight)adamantys, which targets individuals and organizations worldwide, falsely accusing them of copyright infringement.  Attackers impersonate legitimate companies via Gmail accounts, sending emails that trick victims …

North Korean Hackers Abuse Cloud-Based Services to Deploy Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ESET’s recent report details the activities of various advanced persistent threat (APT) groups from April to September 2024, highlighting key trends and developments observed during this period, including the use of sophisticated techniques such as targeted phishing attacks, malware distribution, …

Beware of Fake Copyright Claims That Deliver Rhadamanthys Stealer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Stealer malware is a type of malicious software designed to infiltrate computers and extract sensitive information. Once installed, it communicates with a command-and-control server operated by threat actors and enables data theft like saved passwords and browser cookies. Security experts …

Threat Actors Attacking macOS Users With New Multi-stage Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Multi-stage malware means sophisticated cyberattack strategies that evolve in several steps. Recent developments in multi-stage malware highlight the increasing sophistication of cyber threats. SentinelOne researchers recently discovered that threat actors have been attacking macOS users with new multi-stage malware. macOS …