Security News

GitHub comments abused to push password stealing malware masked as fixes
2024-08-31 15:21

GitHub is being abused to distribute the Lumma Stealer information-stealing malware as fake fixes posted in project comments. [...]

New Voldemort malware abuses Google Sheets to store stolen data
2024-08-30 18:04

A campaign that started on August 5, 2024, is spreading a previously undocumented malware named "Voldemort" to organizations worldwide, impersonating tax agencies from the U.S., Europe, and Asia. [...]

Cyberattackers Exploit Google Sheets for Malware Control in Likely Espionage Campaign
2024-08-30 13:04

Cybersecurity researchers have uncovered a novel malware campaign that leverages Google Sheets as a command-and-control (C2) mechanism. The activity, detected by Proofpoint starting August 5,...

New Malware Masquerades as Palo Alto VPN Targeting Middle East Users
2024-08-30 10:20

Cybersecurity researchers have disclosed a new campaign that potentially targets users in the Middle East through malware that disguises itself as Palo Alto Networks GlobalProtect virtual private...

Malware exploits 5-year-old zero-day to infect end-of-life IP cameras
2024-08-29 15:46

The Corona Mirai-based malware botnet is spreading through a 5-year-old remote code execution (RCE) zero-day in AVTECH IP cameras, which have been discontinued for years and will not receive a patch. [...]

South Korean hackers exploited WPS Office zero-day to deploy malware
2024-08-28 22:50

The South Korea-aligned cyberespionage group APT-C-60 has been leveraging a zero-day code execution vulnerability in the Windows version of WPS Office to install the SpyGlace backdoor on East...

New Tickler malware used to backdoor US govt, defense orgs
2024-08-28 18:36

The APT33 Iranian hacking group has used new Tickler malware to backdoor the networks of organizations in the government, defense, satellite, oil and gas sectors in the United States and the...

New Tickler malware used to backdoor US govt, defense orgs
2024-08-28 18:36

The APT33 Iranian hacking group has used new Tickler malware to backdoor the networks of organizations in the government, defense, satellite, oil and gas sectors in the United States and the...

Malware infiltrates Pidgin messenger’s official plugin repository
2024-08-27 17:25

The Pidgin messaging app removed the ScreenShareOTR plugin from its official third-party plugin list after it was discovered that it was used to install keyloggers, information stealers, and...

Microsoft mistake blows up admins' inboxes with fake malware alerts
2024-08-26 19:45

Legitimate emails misclassified in software snafu Many administrators have had a trying Monday after getting spammed out with false malware reports by Microsoft.…