Security News > 2024 > August

North Korean hackers exploit Chrome zero-day to deploy rootkit
2024-08-30 17:04

North Korean hackers have exploited a recently patched Google Chrome zero-day (CVE-2024-7971) to deploy the FudModule rootkit after gaining SYSTEM privileges using a Windows Kernel exploit. [...]

Researcher sued for sharing data stolen by ransomware with media
2024-08-30 14:44

The City of Columbus, Ohio, has filed a lawsuit against security researcher David Leroy Ross, aka Connor Goodwolf, accusing him of illegally downloading and disseminating data stolen from the...

Tired of airport security queues? SQL inject yourself into the cockpit, claim researchers
2024-08-30 13:28

Infosec hounds say they spotted vulnerability during routine travel in the US Cybersecurity researchers say they've found a vulnerability that allowed them to skip US airport security checks and...

Cyberattackers Exploit Google Sheets for Malware Control in Likely Espionage Campaign
2024-08-30 13:04

Cybersecurity researchers have uncovered a novel malware campaign that leverages Google Sheets as a command-and-control (C2) mechanism. The activity, detected by Proofpoint starting August 5,...

How RansomHub went from zero to 210 victims in six months
2024-08-30 12:14

RansomHub, a ransomware-as-a-service (RaaS) outfit that “popped up” earlier this year, has already amassed at least 210 victims (that we know of). Its affiliates have hit government services, IT...

Iranian Hackers Set Up New Network to Target U.S. Political Campaigns
2024-08-30 11:15

Cybersecurity researchers have unearthed new network infrastructure set up by Iranian threat actors to support activities linked to the recent targeting of U.S. political campaigns. Recorded...

Breaking Down AD CS Vulnerabilities: Insights for InfoSec Professionals
2024-08-30 10:42

The most dangerous vulnerability you’ve never heard of. In the world of cybersecurity, vulnerabilities are discovered so often, and at such a high rate, that it can be very difficult to keep up...

New Malware Masquerades as Palo Alto VPN Targeting Middle East Users
2024-08-30 10:20

Cybersecurity researchers have disclosed a new campaign that potentially targets users in the Middle East through malware that disguises itself as Palo Alto Networks GlobalProtect virtual private...

North Korean Hackers Target Developers with Malicious npm Packages
2024-08-30 06:25

Threat actors with ties to North Korea have been observed publishing a set of malicious packages to the npm registry, indicating "coordinated and relentless" efforts to target developers with...

SANS Institute Unveils Critical Infrastructure Strategy Guide for 2024: A Call to Action for Securing ICS/OT Environments
2024-08-30 06:19

A comprehensive guide authored by Dean Parsons emphasizes the growing need for specialized ICS security measures in the face of rising cyber threats. With a staggering 50% increase in ransomware...