Hackers Using Malicious Browser Extensions to Steal Facebook Business Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

It has come to light that Facebook Business accounts have been compromised through the use of harmful browser extensions developed by the notorious Ducktail family. Ducktail is a specifically designed …

ClearFake a New Malware Attacking Mac users via fake browser updates

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mac users were targeted by a fake browser update chain called ‘ClearFake’, which was delivered by Atomic Stealer to compromise their systems. Malwarebytes has reported that one of the most …

Hackers using Weaponized Office Document to Exploit Windows Search RCE

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new attack chain campaign has been discovered, which involves the exploitation of CVE-2023-36884 and CVE-2023-36584. CVE-2023-36884 was a remote code execution vulnerability, and CVE-2023-36584 was a security bypass vulnerability …

North Korean Hackers Targeting CyberLink Users in Supply-chain Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the ever-evolving realm of cybersecurity, Microsoft Threat Intelligence has uncovered a sophisticated supply chain attack orchestrated by the North Korean Hackers Diamond Sleet (ZINC).  This ingenious attack involved tampering …

WailingCrab Malware Abuse Messaging Protocol for C2 Communications

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers noticed developments in the sophisticated, multi-component malware dubbed WailingCrab, especially those pertaining to its C2 communication techniques, which included abusing the MQTT Internet-of-Things (IoT) messaging protocol. The WailingCrab malware, commonly …

Hackers Exploiting Windows SmartScreen Zero-day Vulnerability to Deploy Remcos RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft released multiple security patches as part of their Patch Tuesday, in which three zero-day vulnerabilities were also patched. One of the zero-day vulnerabilities was CVE-2023-36025, which affected the Windows …

Bug Hunter GPT – AI Assistant that Replies for Hacking Questions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ChatGPT, like InstructGPT, follows prompts for detailed responses. It answers questions and composes content similar to customer service chatbots. LLMs (Large Language Models) are revolutionizing cybersecurity rapidly with the help …

Citrix Warns Admin to Kill Active or Persistent Sessions to Thwart Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

As previously reported, CVE-2023-4966 was discovered and published by Citrix. This vulnerability affected Citrix NetScaler Gateway and ADC devices. Following this, AssetNote published a proof-of-concept for this vulnerability named “CitrixBleed.” …