Hackers Steal Mimecast Certificate Used to Securely Connect with Microsoft 365

Blog WriterThe Hacker News - Original news source is thehackernews.com

Mimecast said on Tuesday that “a sophisticated threat actor” had compromised a digital certificate it provided to certain customers to securely connect its products to Microsoft 365 (M365) Exchange. The …

Warning — 5 New Trojanized Android Apps Spying On Users In Pakistan

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers took the wraps off a new spyware operation targeting users in Pakistan that leverages trojanized versions of legitimate Android apps to carry out covert surveillance and espionage. Designed …

Microsoft Issues Patches for Defender Zero-Day and 82 Other Windows Flaws

Blog WriterThe Hacker News - Original news source is thehackernews.com

For the first patch Tuesday of 2021, Microsoft released security updates addressing a total of 83 flaws spanning as many as 11 products and services, including an actively exploited zero-day vulnerability. The …

Researchers Find Links Between Sunburst and Russian Kazuar Malware

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers, for the first time, may have found a potential connection between the backdoor used in the SolarWinds hack to a previously known malware strain. In new research published by Kaspersky researchers today, …

Unveiled: SUNSPOT Malware Was Used to Inject SolarWinds Backdoor

Blog WriterThe Hacker News - Original news source is thehackernews.com

As the investigation into the SolarWinds supply-chain attack continues, cybersecurity researchers have disclosed a third malware strain that was deployed into the build environment to inject the backdoor into the …

How Does Your AD Password Policy Compare to NIST’s Password Recommendations?

Blog WriterThe Hacker News - Original news source is thehackernews.com

End-user passwords are one of the weakest components of your overall security protocols. Most users tend to reuse passwords across work and personal accounts. They may also choose relatively weak …

ALERT: North Korean hackers targeting South Korea with RokRat Trojan

Blog WriterThe Hacker News - Original news source is thehackernews.com

A North Korean hacking group has been found deploying the RokRat Trojan in a new spear-phishing campaign targeting the South Korean government. Attributing the attack to APT37 (aka Starcruft, Ricochet Chollima, or …

New Attack Could Let Hackers Clone Your Google Titan 2FA Security Keys

Blog WriterThe Hacker News - Original news source is thehackernews.com

Hardware security keys—such as those from Google and Yubico—are considered the most secure means to protect accounts from phishing and takeover attacks. But a new research published on Thursday demonstrates …