Latest Cybersecurity News and Articles


Microsoft Two-Step Phishing Campaign Targets LinkedIn Users

09 April 2024
A new LinkedIn threat combines breached users’ accounts and an evasive 2-step phishing attack. A recent Python-based infostealer called Snake targets Facebook users with malicious messages.

Hackers Targeting Human Rights Activists in Morocco and Western Sahara

09 April 2024
Human rights activists in Morocco and the Western Sahara region are the targets of a new threat actor that leverages phishing attacks to trick victims into installing bogus Android apps and serve credential harvesting pages for Windows users. Cisco Talos is tracking the activity cluster under the name Starry Addax, describing it as primarily singling out activists associated with

US Health Deptarment Warns Hospitals of Hackers Targeting IT Help Desks

09 April 2024
The U.S. Department of Health and Human Services (HHS) warns that hackers are now using social engineering tactics to target IT help desks across the Healthcare and Public Health (HPH) sector.

Researchers Discover LG Smart TV Vulnerabilities Allowing Root Access

09 April 2024
Multiple security vulnerabilities have been disclosed in LG webOS running on its smart televisions that could be exploited to bypass authorization and gain root access on the devices. The findings come from Romanian cybersecurity firm Bitdefender, which discovered and reported the flaws in November 2023. The issues were fixed by LG as part of updates released on March 22, 2024. The

CL0P's Ransomware Rampage - Security Measures for 2024

09 April 2024
2023 CL0P Growth  Emerging in early 2019, CL0P was first introduced as a more advanced version of its predecessor the ‘CryptoMix’ ransomware, brought about by its owner CL0P ransomware, a cybercrime organisation. Over the years the group remained active with significant campaigns throughout 2020 to 2022. But in 2023 the CL0P ransomware gang took itself to new heights and became one of the

Hackers Deploy Crypto Drainers on Thousands of WordPress Sites

09 April 2024
According to cybersecurity researcher MalwareHunterTeam, the threat actors have now begun monetizing the pool of compromised WordPress sites to display pop-ups promoting fake NFT offers and crypto discounts.

Patches for CVE-2024-1086 for CloudLinux 6h, 7 Users on KernelCare Live

09 April 2024
The KernelCare team is working on deploying a live patch for CVE-2024-1086 for CloudLinux users. A patch has already been released for CloudLinux 6h and CloudLinux 7, and users can manually update without a live patch.

Cybercriminal Adoption of Browser Fingerprinting

09 April 2024
Numerous pieces of data can be collected as a part of fingerprinting, including Time zone, Language settings, IP address, Cookie settings, Screen resolution, Browser privacy, and User-agent string.

Automating Pikabot’s String Deobfuscation

09 April 2024
Previous versions of Pikabot used advanced string encryption techniques, which have been replaced with simpler algorithms. Previously, the strings were encrypted using a combination of AES-CBC and RC4 algorithms.

ScrubCrypt Deploys VenomRAT with an Arsenal of Plugins

09 April 2024
Cybersecurity researchers have discovered an intricate multi-stage attack that leverages invoice-themed phishing decoys to deliver a wide range of malware such as Venom RAT, Remcos RAT, XWorm, NanoCore RAT, and a stealer that targets crypto wallets.

Malware-Initiated Vulnerability Scanning is on the Rise

09 April 2024
Threat actors have been using scanning methods to pinpoint vulnerabilities in networks or systems for a very long time. Some scanning attacks originate from benign networks likely driven by malware on infected machines.

Attackers Using Obfuscation Tools to Deliver Multi-Stage Malware via Invoice Phishing

09 April 2024
Cybersecurity researchers have discovered an intricate multi-stage attack that leverages invoice-themed phishing decoys to deliver a wide range of malware such as Venom RAT, Remcos RAT, XWorm, NanoCore RAT, and a stealer that targets crypto wallets. The email messages come with Scalable Vector Graphics (SVG) file attachments that, when clicked, activate the infection sequence, Fortinet

Critical Flaws Leave 92,000 D-Link NAS Devices Vulnerable to Malware Attacks

09 April 2024
Threat actors are actively scanning and exploiting a pair of security flaws that are said to affect as many as 92,000 internet-exposed D-Link network-attached storage (NAS) devices. Tracked as CVE-2024-3272 (CVSS score: 9.8) and CVE-2024-3273 (CVSS score: 7.3), the vulnerabilities impact legacy D-Link products that have reached end-of-life (EoL) status. D-Link, in

William Wragg resigns from two Commons roles after divulging MPs’ phone numbers

08 April 2024
William Wragg resigns from two Commons roles after divulging MPs’ phone numbers Tory MP resigns committee roles after apology for role in parliamentary sexting scandalThe Conservative MP who divulged colleagues’ personal phone numbers to someone he met on a dating app as part of a parliamentary sexting scandal has stepped down from two Commons roles, it has been reported.William Wragg has resigned as chair of the Commons’ public administration and constitutional affairs committee and also quit his post as the vice-chair of the 1922 Committee of Conservative backbenchers after admitting to giving the information to a man he met, according to reports. Continue reading...

Escalation of Fake E-Shop Campaign Threatens Banking Security in Multiple Regions

08 April 2024
The threat actor behind the fake e-shop campaign leverages tools such as the open-source string obfuscator “Paranoid” and the Janus WebRTC module, showcasing a deep understanding of technological intricacies to evade detection and amplify impact.

No 10 tells MPs to be cautious about unsolicited messages after attempted ‘honeytrap’

08 April 2024
No 10 tells MPs to be cautious about unsolicited messages after attempted ‘honeytrap’ Message comes as pressure builds on Tories to take disciplinary action against MP William WraggUK politics – latest updatesDowning Street has urged MPs to be cautious when responding to unsolicited messages, after the “spear-phishing” attack that targeted more than a dozen MPs, staff and journalists working in Westminster.Number 10 issued the warning on Monday morning, days after two police forces launched an investigation into what is being described as an attempted “honeytrap”. Continue reading...

Hotel Check-In Terminal Leaks Rafts of Guests' Room Codes

08 April 2024
Martin Schobert at Swiss security firm Pentagrid discovered that an attacker could input a series of six consecutive dashes (------) in place of a booking reference number and the terminal would return an extensive list of room details.

Fake Facebook MidJourney AI Page Promoted Malware to 1.2 Million People

08 April 2024
Hackers are using Facebook advertisements and hijacked pages to promote fake Artificial Intelligence services, such as MidJourney, OpenAI's SORA and ChatGPT-5, and DALL-E, to infect unsuspecting users with password-stealing malware.

Google Sues Crypto Investment App Makers Over Alleged Massive “Pig Butchering” Scam

08 April 2024
Two China-based Android app developers are being sued by Google for an alleged scam targeting 100,000 users worldwide through fake cryptocurrency and other investment apps.

Google Chrome Adds V8 Sandbox - A New Defense Against Browser Attacks

08 April 2024
Google has announced support for what's called a V8 Sandbox in the Chrome web browser in an effort to address memory corruption issues. The sandbox, according to V8 Security technical lead Samuel Groß, aims to prevent "memory corruption in V8 from spreading within the host process." The search behemoth has described V8 Sandbox as a lightweight, in-process sandbox