TrickBot Operators Partner with Shathak Attackers for Conti Ransomware

Blog WriterThe Hacker News - Original news source is thehackernews.com

The operators of TrickBot trojan are collaborating with the Shathak threat group to distribute their wares, ultimately leading to the deployment of Conti ransomware on infected machines. “The implementation of TrickBot has …

Hackers Exploit macOS Zero-Day to Hack Hong Kong Users with new Implant

Blog WriterThe Hacker News - Original news source is thehackernews.com

Google researchers on Thursday disclosed that it found a watering hole attack in late August exploiting a now-parched zero-day in macOS operating system and targeting Hong Kong websites related to …

Iran’s Lyceum Hackers Target Telecoms, ISPs in Israel, Saudi Arabia, and Africa

Blog WriterThe Hacker News - Original news source is thehackernews.com

A state-sponsored threat actor allegedly affiliated with Iran has been linked to a series of targeted attacks aimed at internet service providers (ISPs) and telecommunication operators in Israel, Morocco, Tunisia, …

Palo Alto Warns of Zero-Day Bug in Firewalls Using GlobalProtect Portal VPN

Blog WriterThe Hacker News - Original news source is thehackernews.com

A new zero-day vulnerability has been disclosed in Palo Alto Networks GlobalProtect VPN that could be abused by an unauthenticated network-based attacker to execute arbitrary code on affected devices with …

13 New Flaws in Siemens Nucleus TCP/IP Stack Impact Safety-Critical Equipment

Blog WriterThe Hacker News - Original news source is thehackernews.com

As many as 13 security vulnerabilities have been discovered in the Nucleus TCP/IP stack, a software library now maintained by Siemens and used in three billion operational technology and IoT …

14 New Security Flaws Found in BusyBox Linux Utility for Embedded Devices

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers on Tuesday disclosed 14 critical vulnerabilities in the BusyBox Linux utility that could be exploited to result in a denial-of-service (DoS) condition and, in select cases, even lead …