Hackers Exploit Google Ads to Spread IP Scanner with Concealed Backdoor

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Malicious actors are distributing a new backdoor, MadMxShell, through a Google Ads campaign that impersonates an IP scanner. This Windows backdoor leverages DNS MX queries for communication with its command-and-control server.  The technique involves encoding data within subdomains of DNS …

PlugX USB worm Infected Over 2.5M Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new menace has emerged, affecting millions of devices worldwide. The PlugX USB worm, a sophisticated malware, has been reported to have infected over 2.5 million devices, posing a significant threat to global cybersecurity. The PlugX malware, initially identified several …

Hackers Employ Black Hat SEO Techniques To Deliver Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers use black hat SEO methods to manipulate search engine rankings and make malicious or fraudulent websites more visible. Recently, Zscaler cybersecurity researchers have seen a wave of fraudulent sites hosted on well-known web hosting services and blogging platforms that …

GitLab High-severity Flaw Let Attackers Takeover Account – Update Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab released security patches 16.11.1, 16.10.4, and 16.9.6 for both Community and Enterprise Editions, and upgrading to these versions is strongly recommended to address vulnerabilities.  Scheduled patch releases occur twice a month, while ad-hoc critical patches are released for high-severity …

New Qiulong Ransomware Well-Equiped To Make Waves

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Qiulong ransomware gang, a new cyber threat actor, has emerged targeting Brazilian victims as the group announced their arrival by compromising Dr. Lincoln Graca Neto and Rosalvo Automoveis, two entities located in Brazil.  The attackers created a website on …

ArcaneDoor Exploiting Cisco Zero-Days To Attack Government Networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers target Cisco zero-days as they can abuse the widely used networking equipment that contains vulnerabilities which means they can affect many systems and networks in one shot.  Attackers use these vulnerabilities to gain unauthorized entry, execute any code, or …

KnowBe4 to Acquire Egress for Aids in Email Awareness Training

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

KnowBe4, the leader in security awareness training and simulated phishing platforms, has announced its definitive agreement to acquire Egress, a pioneer in adaptive and integrated cloud email security. This acquisition is set to create the most extensive, AI-driven cybersecurity platform …

Social Engineering Paves the Way for the XZ Cyber Incident

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The XZ cyber incident is a textbook example of how sophisticated social engineering tactics can lead to significant security breaches. Over the course of two years, a carefully planned attack was executed against the popular XZ Utils open-source project. The …

Google Meet Now Allows Non-Google Account Users to Join Encrypted Calls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has announced that external participants without Google accounts can join client-side encrypted Google Meet calls. This move marks a substantial step in balancing user accessibility with robust security measures. Google Meet has become an essential tool for virtual meetings, …

Volkswagen Hacked – Hackers Stolen 19,000 Documents From VW Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Volkswagen, one of the world’s leading automotive manufacturers, has fallen victim to a sophisticated hacking operation in a significant cybersecurity breach. Investigations suggest that the cyberattack originated in China, raising concerns over international cyber espionage and its implications for the …