Information Security News Blog

Ted Backdoor HAProxy malware and CurlRAT cyberattack structure 0

Suspected North Korean Hackers Deploy Ted Backdoor

Suspected North Korean hackers may have spied on South Korean organizations for years using trojanized Linux system services and an HAProxy backdoor. Rapid7 researchers discovered a previously unknown set of malicious tools. These tools...

Rogue ScreenConnect worm malware targeting IT service providers 0

ScreenConnect Weaponized as a Self-Propagating Worm

Cybercriminals have transformed ScreenConnect into a weaponized mechanism capable of infecting other ScreenConnect systems during standard connections. The modified client automatically detects a new session, dispatches malicious scripts via the native file transfer feature,...

WeChat zero-click worm exploiting WeChat VoIP memory corruption 0

WeChat Zero-Click Worm Exposed in New Security Advisory

Researchers at Calif developed the first zero-click worm for WeChat. This WeChat zero-click worm spreads through automated calls across iOS and Android platforms. Tencent has already mitigated this critical threat on their servers. Why...

Germany Cyberdome defense system against hybrid threats and cyberattacks 0

Germany Unifies Defenses Against Hybrid Threats

Germany is poised to consolidate its defenses against hackers, rogue drones, and saboteurs into a singular, cohesive military logic. Following the alarming attack at Leipzig/Halle Airport, the national authorities are formulating a comprehensive package...

Destinus Hornet modular interceptor concept for naval drone defense deployment 0

Modular Drone Defense for Modern Navies

Naval forces may soon possess the capability to bolster their drone defenses as effortlessly as a vessel loads a new cargo module. Destinus, OMT Group, and CUBEDIN are collaboratively engineering a containerized module featuring...

REVSTEALER malware components architecture and infostealer infection process 0

The Hidden Perils of REVSTEALER Infections

Eradicating a data stealer from a computer does not mean the system is safe. The cybersecurity firm Elastic has outlined four previously unknown components linked to the REVSTEALER credential harvesting infostealer. Unlike the primary...

Berlin ransomware data breach diagram showing Rhysida syndicate leaking German government files 0

Berlin Government Suffers Massive Ransomware Data Breach

Berlin’s steadfast refusal to capitulate to extortionists has culminated in the exposure of one of the most substantial German government data breaches in recent history. The Rhysida ransomware syndicate unceremoniously published approximately 1.44 million...

Pegasus spyware in Serbia forensic report detailing Pegasus spyware infections 0

Pegasus Spyware in Serbia Targets Student Activist

TL;DR Researchers at the Citizen Lab and the SHARE Foundation confirmed a mercenary spyware attack in Serbia. A zero-click exploit delivered Pegasus spyware to an iPhone belonging to a pro-democracy student activist. Meanwhile, independent...