Security News

Firefox and Windows zero-days exploited by Russian RomCom hackers
2024-11-26 12:13

​Russian-based RomCom cybercrime group chained two zero-day vulnerabilities in recent attacks targeting Firefox and Tor Browser users across Europe and North America. [...]

Chinese Hackers Use GHOSTSPIDER Malware to Hack Telecoms Across 12+ Countries
2024-11-26 10:19

The China-linked threat actor known as Earth Estries has been observed using a previously undocumented backdoor called GHOSTSPIDER as part of its attacks targeting Southeast Asian...

RomCom hackers chained Firefox and Windows zero-days to deliver backdoor
2024-11-26 10:00

Russia-aligned APT group RomCom was behind attacks that leveraged CVE-2024-9680, a remote code execution flaw in Firefox, and CVE-2024-49039, an elevation of privilege vulnerability in Windows...

Faraway Russian hackers breached US organization via Wi-Fi
2024-11-25 16:50

Forest Blizzard, a threat group associated with Russia’s GRU military intelligence service, repeatedly breached a US-based organization via compromised computer systems of nearby firms, which they...

Salt Typhoon hackers backdoor telcos with new GhostSpider malware
2024-11-25 16:12

The Chinese state-sponsored hacking group Salt Typhoon has been observed utilizing a new "GhostSpider" backdoor in attacks against telecommunication service providers. [...]

Volunteer DEF CON hackers dive into America's leaky water infrastructure
2024-11-24 15:27

Six sites targeted for security clean-up, just 49,994 to go A plan for hackers to help secure America's critical infrastructure has kicked off with six US water companies signing up to let coders...

Hackers abuse Avast anti-rootkit driver to disable defenses
2024-11-23 15:07

A new malicious campaign is using a legitimate but old and vulnerable Avast Anti-Rootkit driver to evade detection and take control of the target system by disabling security components. [...]

North Korean Hackers Steal $10M with AI-Driven Scams and Malware on LinkedIn
2024-11-23 11:53

The North Korea-linked threat actor known as Sapphire Sleet is estimated to have stolen more than $10 million worth of cryptocurrency as part of social engineering campaigns orchestrated over a...

Hackers breach US firm over Wi-Fi from Russia in 'Nearest Neighbor Attack'
2024-11-22 19:33

Russian state hackers APT28 (Fancy Bear/Forest Blizzard/Sofacy) breached a U.S. company through its enterprise WiFi network while being thousands of miles away, by leveraging a novel technique...

Russian Hackers Deploy HATVIBE and CHERRYSPY Malware Across Europe and Asia
2024-11-22 16:59

Threat actors with ties to Russia have been linked to a cyber espionage campaign aimed at organizations in Central Asia, East Asia, and Europe. Recorded Future's Insikt Group, which has assigned...