Hackers Abuse HTML Smuggling Technique To Deliver Sophisticated Phishing Page

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

HTML smuggling is a sophisticated technique used by threat actors to deliver malware by embedding malicious JavaScript within seemingly harmless HTML files. This method exploits HTML5 and JavaScript features, allowing …

Storm-0501 Ransomware Group Attacking Hybrid Cloud Environments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ransomware groups are organized cybercriminal entities that deploy malicious software to encrypt victims’ data, demanding ransom payments for decryption keys. The rise of ransomware groups has led to an increase …

LummaC2 Stealer Abusing Customized Control Flow Indirection For Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

LummaC2 Stealer is a sophisticated information-stealing malware designed to target sensitive data, particularly from cryptocurrency wallets and 2FA extensions across various web browsers.  This stealer was discovered in late 2022, …

SilentSelfie Exploited 25 Websites To Deploy Malicious Android Application

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are increasingly exploiting websites to carry out various cyberattacks, and they do so by leveraging vulnerabilities in web applications and user behavior.  While the most common tactics are …

Critical WhatsUp Gold Vulnerabilities, let Attackers Gain unauthorized Network access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WhatsUp Gold, a widely used network monitoring software, recently identified six critical vulnerabilities that could allow attackers to access unauthorized networks. The vulnerabilities affect versions below 24.0.1, and users are …

Russian Nationals Charged for money laundering services Fueling criminal ecosystem

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Department of Justice has announced charges against two Russian nationals for allegedly operating extensive money laundering services that supported a global network of cybercriminals. This coordinated effort involved …

VLC Player Vulnerability Let Attackers Execute Malicious Code, Update Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in the VLC media player has been identified, allowing attackers to execute malicious code on users’ computers. The vulnerability, detailed in the Security Bulletin VLC 3.0.21, affects …

Unauthenticated RCE Flaw Impacts all Linux Systems – Details Revealed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A severe remote code execution (RCE) vulnerability has been uncovered by Simone Margaritelli in the Common Unix Printing System (CUPS), affecting all GNU/Linux systems. Simone Margaritelli earlier notified about the …

CISA Releases Active Directory Security Guide to Mitigate Cyber Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a move to enhance cybersecurity, the Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with several international cybersecurity agencies, has released a comprehensive guide on detecting and mitigating Active …