Security News

New Grandoreiro Banking Malware Variants Emerge with Advanced Tactics to Evade Detection
2024-10-23 17:33

New variants of a banking malware called Grandoreiro have been found to adopt new tactics in an effort to bypass anti-fraud measures, indicating that the malicious software is continuing to be...

Bumblebee and Latrodectus Malware Return with Sophisticated Phishing Strategies
2024-10-22 10:00

Two malware families that suffered setbacks in the aftermath of a coordinated law enforcement operation called Endgame have resurfaced as part of new phishing campaigns. Bumblebee and Latrodectus,...

Pixel perfect Ghostpulse malware loader hides inside PNG image files
2024-10-22 05:30

Miscreants combine it with an equally tricky piece of social engineering The Ghostpulse malware strain now retrieves its main payload via a PNG image file's pixels. This development, security...

Bumblebee malware returns after recent law enforcement disruption
2024-10-21 15:45

The Bumblebee malware loader has been spotted in new attacks recently, more than four months after Europol disrupted it during 'Operation Endgame' in May. [...]

macOS HM Surf vuln might already be under exploit by major malware family
2024-10-21 13:32

Like keeping your camera and microphone private? Patch up In revealing details about a vulnerability that threatens the privacy of Apple fans, Microsoft urges all macOS users to update their systems.…

Israeli orgs targeted with wiper malware via ESET-branded emails
2024-10-18 10:23

Attackers have tried to deliver wiper malware to employees at organizations across Israel by impersonating cybersecurity company ESET via email. The phishing email The attack took the form of a...

Fake Google Meet conference errors push infostealing malware
2024-10-17 21:00

A new ClickFix campaign is luring users to fraudulent Google Meet conference pages showing fake connectivity errors that deliver info-stealing malware for Windows and macOS operating systems. [...]

Malicious ads exploited Internet Explorer zero day to drop malware
2024-10-16 13:59

The North Korean hacking group ScarCruft launched a large-scale attack in May that leveraged an Internet Explorer zero-day flaw to infect targets with the RokRAT malware and exfiltrate data. [...]

North Korean ScarCruft Exploits Windows Zero-Day to Spread RokRAT Malware
2024-10-16 10:50

The North Korean threat actor known as ScarCruft has been linked to the zero-day exploitation of a now-patched security flaw in Windows to infect devices with malware known as RokRAT. The...

Astaroth Banking Malware Resurfaces in Brazil via Spear-Phishing Attack
2024-10-16 07:20

A new spear-phishing campaign targeting Brazil has been found delivering a banking malware called Astaroth (aka Guildma) by making use of obfuscated JavaScript to slip past security guardrails....