Kematian Stealer Abuses Powershell Tool for Covert Data Exfiltration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Kematian Stealer has emerged as a sophisticated PowerShell-based malware that covertly exfiltrates sensitive data from compromised systems. This article delves into the intricate workings of this malicious tool, highlighting …

New Volcano Demon Ransomware Group Threatening Victims Over Phone Call

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A novel malware known as Volcano Demon has been observed targeting Windows workstations and servers, obtaining administrative credentials from the network. The threat actor doesn’t have a leak site and …

Beware Of Malicious PDF Files That Mimic As Microsoft 2FA Security Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Malware authors are exploiting the growing popularity of QR codes to target users through PDF files, where these malicious PDFs, often delivered via email disguised as faxes, contain QR codes …

Critical OpenStack Arbitrary File Access Flaw Exposes Cloud Data to Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been identified in OpenStack, a widely used open-source cloud computing platform. The flaw tracked as CVE-2024-32498, allows authenticated attackers to gain unauthorized access to arbitrary …

Mallox Ransomware Attacking Linux Servers In Wild – Decryptor Uncovered

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Linux servers often provide hosting for critical applications, websites, and databases, which makes them a lucrative target for intruders to get unauthorized access to steal data and manipulate services. Exploiting …

Malicious QR Reader App in Google Play Delivers Anatsa Banking Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity experts have identified a malicious QR code reader app on Google Play that is delivering the notorious Anatsa banking malware. This discovery underscores the persistent threat posed by malicious …

MSI Installer Vulnerability Let Attackers Escalate Privileges with Windows Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical local privilege escalation vulnerability has been discovered in MSI Center versions 2.0.36.0 and earlier, allowing low-privileged users to escalate their privileges on Windows systems. This security flaw, tracked …

International Operation Takes Down 593 Malicious Cobalt Strike Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement agencies from around the world have successfully shut down 593 rogue servers running unauthorized versions of Cobalt Strike, a tool often misused by cybercriminals. The operation, codenamed “Operation …