Security News

Chinese hackers breached T-Mobile's routers to scope out network
2024-11-27 16:53

T-Mobile says the Chinese "Salt Typhoon" hackers who recently compromised its systems as part of a series of telecom breaches first hacked into some of its routers to explore ways to navigate...

APT-C-60 Hackers Exploit StatCounter and Bitbucket in SpyGlace Malware Campaign
2024-11-27 11:14

The threat actor known as APT-C-60 has been linked to a cyber attack targeting an unnamed organization in Japan that used a job application-themed lure to deliver the SpyGlace backdoor. That's...

Hackers exploit critical bug in Array Networks SSL VPN products
2024-11-26 13:26

America's Cyber Defense Agency has received evidence of hackers actively exploiting a remote code execution vulnerability in SSL VPN products Array Networks AG and vxAG ArrayOS. [...]

Firefox and Windows zero-days exploited by Russian RomCom hackers
2024-11-26 12:13

​Russian-based RomCom cybercrime group chained two zero-day vulnerabilities in recent attacks targeting Firefox and Tor Browser users across Europe and North America. [...]

Chinese Hackers Use GHOSTSPIDER Malware to Hack Telecoms Across 12+ Countries
2024-11-26 10:19

The China-linked threat actor known as Earth Estries has been observed using a previously undocumented backdoor called GHOSTSPIDER as part of its attacks targeting Southeast Asian...

RomCom hackers chained Firefox and Windows zero-days to deliver backdoor
2024-11-26 10:00

Russia-aligned APT group RomCom was behind attacks that leveraged CVE-2024-9680, a remote code execution flaw in Firefox, and CVE-2024-49039, an elevation of privilege vulnerability in Windows...

Faraway Russian hackers breached US organization via Wi-Fi
2024-11-25 16:50

Forest Blizzard, a threat group associated with Russia’s GRU military intelligence service, repeatedly breached a US-based organization via compromised computer systems of nearby firms, which they...

Salt Typhoon hackers backdoor telcos with new GhostSpider malware
2024-11-25 16:12

The Chinese state-sponsored hacking group Salt Typhoon has been observed utilizing a new "GhostSpider" backdoor in attacks against telecommunication service providers. [...]

Volunteer DEF CON hackers dive into America's leaky water infrastructure
2024-11-24 15:27

Six sites targeted for security clean-up, just 49,994 to go A plan for hackers to help secure America's critical infrastructure has kicked off with six US water companies signing up to let coders...

Hackers abuse Avast anti-rootkit driver to disable defenses
2024-11-23 15:07

A new malicious campaign is using a legitimate but old and vulnerable Avast Anti-Rootkit driver to evade detection and take control of the target system by disabling security components. [...]