Meet The New Qakbot DLL That Abuses Windows Process For persistence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement dismantled the Qakbot botnet’s servers in 2023’s Operation Duck Hunt, but researchers identified its reemergence with a modified DLL, which utilizes the srtasks.exe process for persistence, ensuring its …

JsOutProx Malware Abusing GitLab To Attack Financial Institutions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab is a prominent web-based Git repository manager that is exploited by hackers to gain unauthorized access to confidential source code, steal intellectual property or insert malicious code into projects …

Hackers Hijacked Notepad++ Plugin To Inject Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers have manipulated a popular Notepad++ plugin, injecting malicious code that compromises users’ systems upon execution. The AhnLab Security Intelligence Center (ASEC) researchers have revealed that the “mimeTools.dll” plugin, which …

Multiple Chinese Hacking Groups Exploiting Ivanti Connect Secure VPN Flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity firm Mandiant has uncovered a series of sophisticated cyberattacks targeting Ivanti Connect Secure VPN appliances. These attacks, attributed to multiple Chinese nexus espionage groups, exploit critical vulnerabilities to facilitate …

Magento Vulnerability Let Attackers Inject Backdoor On E-commerce Websites

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated vulnerability within the Magento ecommerce platform has been unveiled, posing a significant threat to online merchants and shoppers alike.  The vulnerability, identified as CVE-2024-20720, allows attackers to inject …

Apache HTTP Server Flaw Let Attackers Inject Malicious Headers Amd HTTP/2 DoS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apache released updates to address several vulnerabilities impacting the Apache HTTP server that let attackers launch HTTP/2 DoS attacks and insert malicious headers. Server operations are being adversely affected by these …

Hackers Claiming XpressBees Data Leak: 95K User Personal Data Leaked

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The logistics and supply chain company XpressBees has become the latest victim of a data breach. A user by the alias “IntelBroker” on the notorious BreachForums community has claimed responsibility …

Cyber Attack Hits World’s Second Largest Lens-maker

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

HOYA CORPORATION, the world’s second-largest lens manufacturer, has reported an IT system incident that has disrupted its operations. The Tokyo-based company, known for its advanced optics technology and a broad …