Category: Information Security

MMS Fingerprint

NSO’s “MMS Fingerprint”: Zero-Click Phone Hack?

In the documentation of the current legal battle between WhatsApp and the NSO Group, a firm specializing in espionage software, a hint at a previously unknown method of infection has been revealed. The contract...

Radix Ransomware BlackCat Leaders

$10 Million Bounty on ALPHV/BlackCat Leaders

The United States Department of State has announced a reward of up to $10 million for any information that leads to the identification and apprehension of the leaders of the cybercriminal group ALPHV/Blackcat, which...

SNS Sender inputs and outputs

SNS Sender Revealed in Phishing Campaign

Cybercriminals have targeted users’ data through widespread phishing SMS campaigns, employing a specialized script named SNS Sender that exploits Amazon’s Simple Notification Service (SNS). These SMS messages contain malicious links aimed at stealing personal...

GoldPickaxe

GoldFactory Expands GoldPickaxe Malware Operations

Cybercriminals have commenced targeting iPhone owners with malicious software designed to steal 3D facial scans, facilitating unauthorized access to bank accounts. This was disclosed by Group-IB, a cybersecurity firm, which uncovered that a Chinese...

US Government Network Breached

US Government Network Breached: Ex-Employee Account Exploited

The United States Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with the Multi-State Information Sharing and Analysis Center (MS-ISAC), established that unidentified malefactors accessed one of the U.S. government’s internal networks via an...

TinyTurla-NG backdoor

Turla APT Deploys New TinyTurla-NG Backdoor

At the close of 2023, specialists at Cisco Talos identified a campaign orchestrated by the group Turla APT, targeting Polish non-governmental organizations. This assault utilized a novel backdoor, TinyTurla-NG. A distinctive feature of TinyTurla-NG...

Pulse Secure Vulnerabilities

Thousands of Vulnerabilities Found in Pulse Secure

A recent investigation into the firmware of Pulse Secure devices by Ivanti has illuminated profound security vulnerabilities within software supply chains. Specialists at Eclypsium uncovered numerous vulnerabilities, showcasing the complexity of safeguarding such software...

Moobot botnet

Moobot Botnet Takedown: US Disrupts Hacker Operations

In a strikingly orchestrated endeavor during January, the United States authorities successfully dismantled a botnet implicated in conducting espionage and cyberattacks against American and international targets. This operation, spearheaded by law enforcement, entailed purging...

Bumblebee malware

Cybersecurity Alert: Bumblebee Malware Resurfaces

After a four-month hiatus, the Bumblebee malware has reemerged, launching extensive phishing campaigns against thousands of organizations within the United States. Bumblebee, a loader discovered in April 2022, is believed to have been developed by...