PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Researchers Detail How Pakistani Hackers Targeting Indian and Afghan Governments

vendredi 3 décembre 2021 à 14:54
A Pakistani threat actor successfully socially engineered a number of ministries in Afghanistan and a shared government computer in India to steal sensitive Google, Twitter, and Facebook credentials from its targets and stealthily obtain access to government portals. Malwarebytes' latest findings go into detail about the new tactics and tools adopted by the APT group known as SideCopy, which is

New Malvertising Campaigns Spreading Backdoors, Malicious Chrome Extensions

vendredi 3 décembre 2021 à 11:59
A series of malicious campaigns have been leveraging fake installers of popular apps and games such as Viber, WeChat, NoxPlayer, and Battlefield as a lure to trick users into downloading a new backdoor and an undocumented malicious Google Chrome extension with the goal of stealing credentials and data stored in the compromised systems as well as maintaining persistent remote access. Cisco Talos

Why Everyone Needs to Take the Latest CISA Directive Seriously

vendredi 3 décembre 2021 à 10:23
Government agencies publish notices and directives all the time. Usually, these are only relevant to government departments, which means that nobody else really pays attention. It's easy to see why you would assume that a directive from CISA just doesn't relate to your organization. But, in the instance of the latest CISA directive, that would be making a mistake. In this article, we explain why

New Payment Data Sealing Malware Hides in Nginx Process on Linux Servers

vendredi 3 décembre 2021 à 09:06
E-commerce platforms in the U.S., Germany, and France have come under attack from a new form of malware that targets Nginx servers in an attempt to masquerade its presence and slip past detection by security solutions. "This novel code injects itself into a host Nginx application and is nearly invisible," Sansec Threat Research team said in a new report. "The parasite is used to steal data from

CISA Warns of Actively Exploited Critical Zoho ManageEngine ServiceDesk Vulnerability

vendredi 3 décembre 2021 à 06:24
The U.S. Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) are warning of active exploitation of a newly patched flaw in Zoho's ManageEngine ServiceDesk Plus product to deploy web shells and carry out an array of malicious activities. Tracked as CVE-2021-44077 (CVSS score: 9.8), the issue relates to an unauthenticated, remote code execution