Tropic Trooper Cyber Espionage Hackers Targeting Transportation Sector

Blog WriterThe Hacker News - Original news source is thehackernews.com

The transportation industry and government agencies related to the sector are the victims of an ongoing campaign since July 2020 by a sophisticated and well-equipped cyberespionage group in what appears …

Secret Backdoors Found in German-made Auerswald VoIP System

Blog WriterThe Hacker News - Original news source is thehackernews.com

Multiple backdoors have been discovered during a penetration test in the firmware of a widely used voice over Internet Protocol (VoIP) appliance from Auerswald, a German telecommunications hardware manufacturer, that …

New Mobile Network Vulnerabilities Affect All Cellular Generations Since 2G

Blog WriterThe Hacker News - Original news source is thehackernews.com

Researchers have disclosed security vulnerabilities in handover, a fundamental mechanism that undergirds modern cellular networks, which could be exploited by adversaries to launch denial-of-service (DoS) and man-in-the-middle (MitM) attacks using …

Experts Discover Backdoor Deployed on the U.S. Federal Agency’s Network

Blog WriterThe Hacker News - Original news source is thehackernews.com

A U.S. federal government commission associated with international rights has been targeted by a backdoor that reportedly compromised its internal network in what the researchers described as a “classic APT-type …

Over 500,000 Android Users Downloaded a New Joker Malware App from Play Store

Blog WriterThe Hacker News - Original news source is thehackernews.com

A malicious Android app with more than 500,000 downloads from the Google Play app store has been found hosting malware that stealthily exfiltrates users’ contact lists to an attacker-controlled server …

New Local Attack Vector Expands the Attack Surface of Log4j Vulnerability

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers have discovered an entirely new attack vector that enables adversaries to exploit the Log4Shell vulnerability on servers locally by using a JavaScript WebSocket connection. “This newly-discovered attack vector …