PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Husband-Wife Arrested in Ukraine for Ransomware Attacks on Foreign Companies

vendredi 14 janvier 2022 à 09:06
Ukrainian police authorities have nabbed five members of a gang that's believed to have helped orchestrate attacks against more than 50 companies across Europe and the U.S and caused losses to the tune of more than $1 million. The special operation, which was carried out in assistance with law enforcement officials from the U.K. and U.S., saw the arrest of an unnamed 36-year-old individual from

Cisco Releases Patch for Critical Bug Affecting Unified CCMP and Unified CCDM

vendredi 14 janvier 2022 à 08:20
Cisco Systems has rolled out security updates for a critical security vulnerability affecting Unified Contact Center Management Portal (Unified CCMP) and Unified Contact Center Domain Manager (Unified CCDM) that could be exploited by a remote attacker to take control of an affected system. Tracked as CVE-2022-20658, the vulnerability has been rated 9.6 in severity on the CVSS scoring system, and

GootLoader Hackers Targeting Employees of Law and Accounting Firms

jeudi 13 janvier 2022 à 15:23
Operators of the GootLoader campaign are setting their sights on employees of accounting and law firms as part of a fresh onslaught of widespread cyberattacks to deploy malware on infected systems, an indication that the adversary is expanding its focus to other high-value targets. "GootLoader is a stealthy initial access malware, which after getting a foothold into the victim's computer system,

Researchers Decrypted Qakbot Banking Trojan’s Encrypted Registry Keys

jeudi 13 janvier 2022 à 15:06
Cybersecurity researchers have decoded the mechanism by which the versatile Qakbot banking trojan handles the insertion of encrypted configuration data into the Windows Registry. Qakbot, also known as QBot, QuackBot and Pinkslipbot, has been observed in the wild since 2007. Although mainly fashioned as an information-stealing malware, Qakbot has since shifted its goals and acquired new

Iranian Hackers Exploit Log4j Vulnerability to Deploy PowerShell Backdoor

jeudi 13 janvier 2022 à 09:37
An Iranian state-sponsored actor has been observed scanning and attempting to abuse the Log4Shell flaw in publicly-exposed Java applications to deploy a hitherto undocumented PowerShell-based modular backdoor dubbed "CharmPower" for follow-on post-exploitation. "The actor's attack setup was obviously rushed, as they used the basic open-source tool for the exploitation and based their operations