Security News

Hackers Exploiting Critical Fortinet EMS Vulnerability to Deploy Remote Access Tools
2024-12-20 06:25

A now-patched critical security flaw impacting Fortinet FortiClient EMS is being exploited by malicious actors as part of a cyber campaign that installed remote desktop software such as AnyDesk...

Fortinet warns of FortiWLM bug giving hackers admin privileges
2024-12-19 17:24

Fortinet has disclosed a critical vulnerability in Fortinet Wireless Manager (FortiWLM) that allows remote attackers to take over devices by executing unauthorized code or commands through...

BeyondTrust says hackers breached Remote Support SaaS instances
2024-12-19 15:42

Privileged access management company BeyondTrust suffered a cyberattack in early December after threat actors breached some of its Remote Support SaaS instances. [...]

Cryptocurrency hackers stole $2.2 billion from platforms in 2024
2024-12-19 15:10

$2.2 billion worth of cryptocurrency was stolen from various platforms in 2024, Chainalysis’ 2025 Crypto Crime Report has revealed. Of that sum, $1.34 billion was stolen by North Korea-affiliated...

Ukrainian hacker gets prison for infostealer operations
2024-12-19 09:52

Ukrainian national Mark Sokolovsky was sentenced to 60 months in federal prison for one count of conspiracy to commit computer intrusion. According to court documents, he conspired to operate the...

Russian hackers use RDP proxies to steal data in MiTM attacks
2024-12-18 21:53

The Russian hacking group tracked as APT29 (aka "Midnight Blizzard") is using a network of 193 remote desktop protocol proxy servers to perform man-in-the-middle (MiTM) attacks to steal data and...

APT29 Hackers Target High-Value Victims Using Rogue RDP Servers and PyRDP
2024-12-18 11:15

The Russia-linked APT29 threat actor has been observed repurposing a legitimate red teaming attack methodology as part of cyber attacks leveraging malicious Remote Desktop Protocol (RDP)...

Hackers Use Microsoft MSC Files to Deploy Obfuscated Backdoor in Pakistan Attacks
2024-12-17 14:11

A new phishing campaign has been observed employing tax-themed lures to deliver a stealthy backdoor payload as part of attacks targeting Pakistan. Cybersecurity company Securonix, which is...

Hackers Exploit Webview2 to Deploy CoinLurker Malware and Evade Security Detection
2024-12-17 09:03

Bogus software update lures are being used by threat actors to deliver a new stealer malware called CoinLurker. "Written in Go, CoinLurker employs cutting-edge obfuscation and anti-analysis...

Winnti hackers target other threat actors with new Glutton PHP backdoor
2024-12-15 15:19

​The Chinese Winnti hacking group is using a new PHP backdoor named 'Glutton' in attacks on organizations in China and the U.S., and also in attacks on other cybercriminals. [...]