Security News

OpenWrt Sysupgrade flaw let hackers push malicious firmware images
2024-12-09 22:33

A flaw in OpenWrt's Attended Sysupgrade feature used to build custom, on-demand firmware images could have allowed for the distribution of malicious firmware packages. [...]

Radiant links $50 million crypto heist to North Korean hackers
2024-12-09 20:25

Radiant Capital now says that North Korean threat actors are behind the $50 million cryptocurrency heist that occurred after hackers breached its systems in an October 16 cyberattack. [...]

Microsoft dangles $10K for hackers to hijack LLM email service
2024-12-09 11:05

Outsmart an AI, win a little Christmas cash Microsoft and friends have challenged AI hackers to break a simulated LLM-integrated email client with a prompt injection attack – and the winning teams...

Hackers Using Fake Video Conferencing Apps to Steal Web3 Professionals' Data
2024-12-07 08:18

Cybersecurity researchers have warned of a new scam campaign that leverages fake video conferencing apps to deliver an information stealer called Realst targeting people working in Web3 under the...

Hackers Leveraging Cloudflare Tunnels, DNS Fast-Flux to Hide GammaDrop Malware
2024-12-06 07:03

The threat actor known as Gamaredon has been observed leveraging Cloudflare Tunnels as a tactic to conceal its staging infrastructure hosting a malware called GammaDrop. The activity is part of an...

U.S. org suffered four month intrusion by Chinese hackers
2024-12-05 22:15

A large U.S. organization with significant presence in China has been reportedly breached by China-based threat actors who persisted on its networks from April to August 2024. [...]

Hackers Target Uyghurs and Tibetans with MOONSHINE Exploit and DarkNimbus Backdoor
2024-12-05 12:43

A previously undocumented threat activity cluster dubbed Earth Minotaur is leveraging the MOONSHINE exploit kit and an unreported Android-cum-Windows backdoor called DarkNimbus to facilitate...

Researchers Uncover 4-Month Cyberattack on U.S. Firm Linked to Chinese Hackers
2024-12-05 11:00

A suspected Chinese threat actor targeted a large U.S. organization earlier this year as part of a four-month-long intrusion. According to Broadcom-owned Symantec, the first evidence of the...

Russia-Linked Turla Exploits Pakistani Hackers' Servers to Target Afghan and Indian Entities
2024-12-04 17:23

The Russia-linked advanced persistent threat (APT) group known as Turla has been linked to a previously undocumented campaign that involved infiltrating the command-and-control (C2) servers of a...

Russian hackers hijack Pakistani hackers' servers for their own attacks
2024-12-04 17:00

The notorious Russian cyber-espionage group Turla is hacking other hackers, hijacking the Pakistani threat actor Storm-0156's infrastructure to launch their own covert attacks on already...