Security News

This Malicious App Abused Hacked Devices to Create Fake Accounts on Multiple Platforms
2022-11-30 12:15

A malicious Android SMS application found on the Google Play Store has been found to stealthily harvest text messages with the goal of creating accounts on a wide range of platforms like Facebook, Google, and WhatsApp. This is achieved by using the phone numbers associated with the infected devices as a means to gather the one-time password that's typically sent to verify the user when setting up new accounts.

15,000 sites hacked for massive Google SEO poisoning campaign
2022-11-09 18:08

Hackers are conducting a massive black hat search engine optimization campaign by compromising almost 15,000 websites to redirect visitors to fake Q&A discussion forums. The attacks were first spotted by Sucuri, who says that each compromised site contains approximately 20,000 files used as part of the search engine spam campaign, with most of the sites being WordPress.

Amadey Bot Spotted Deploying LockBit 3.0 Ransomware on Hacked Machines
2022-11-08 14:52

The Amadey malware is being used to deploy LockBit 3.0 ransomware on compromised systems, researchers have warned. The document contains a malicious VBA macro that, when enabled by the victim, runs a PowerShell command to download and run Amadey.

Vodafone Italy discloses data breach after reseller hacked
2022-11-02 17:05

Vodafone Italia is sending customers notices of a data breach, informing that one of its commercial partners, FourB S.p. Vodafone Italia urges the recipients of the notifications to remain vigilant against incoming communications, as the risk of being targeted by phishing actors and scammers has now increased.

New York Post hacked with offensive headlines targeting politicians
2022-10-27 15:03

"The New York Post has been hacked. We are currently investigating the cause," the daily newspaper tweeted shortly after removing multiple disturbing tweets published earlier on Thursday. Fast Company was forced to take down its website for approximately two weeks after the hacker pushed racist notifications to its readers' mobile devices using the Apple News platform.

Your CCTV devices can be hacked and weaponized
2022-10-27 05:00

In this interview for Help Net Security, Camellia Chan, CEO at Flexxon, talks about the dangers of closed-circuit television (CCTV) hacks and what users can do to protect themselves. More and more...

Police breaks up criminal ring that hacked keyless systems to steal cars
2022-10-18 11:10

A car theft ring that used fraudulent software to "Hack" and steal vehicles with remote keyless entry and ignition systems has been dismantled by the French National Gendarmerie, Europol announced on Monday. "The criminals targeted vehicles with keyless entry and start systems, exploiting the technology to get into the car and drive away," the EU law enforcement agency said.

European Police Arrest a Gang That Hacked Wireless Key Fobs to Steal Cars
2022-10-18 09:47

Law enforcement authorities in France, in collaboration with Spain and Latvia, have disrupted a cybercrime ring that leveraged a hacking tool to steal cars without having to use a physical key fob. "The criminals targeted vehicles with keyless entry and start systems, exploiting the technology to get into the car and drive away," Europol said in a press statement.

Police dismantles criminal ring that hacked keyless cars
2022-10-17 14:52

Authorities from France, Latvia, and Spain arrested 31 suspects believed to be part of a car theft ring that targeted vehicles from two French car manufacturers. The criminals only targeted cars that use keyless entry and start systems and stole them after exploiting their keyless technology to unlock the doors and start the engines without having to use the key fobs.

Almost 900 servers hacked using Zimbra zero-day flaw
2022-10-15 14:14

Almost 900 servers have been hacked using a critical Zimbra Collaboration Suite vulnerability, which at the time was a zero-day without a patch for nearly 1.5 months. The vulnerability tracked as CVE-2022-41352 is a remote code execution flaw that allows attackers to send an email with a malicious archive attachment that plants a web shell in the ZCS server while, at the same time, bypassing antivirus checks.