Security News

Fortinet patches VPN app flaw that could give rogue users, malware a privilege boost
2024-11-14 22:22

Plus a bonus hard-coded local API key A now-patched, high-severity bug in Fortinet's FortiClient VPN application potentially allows a low-privilege rogue user or malware on a vulnerable Windows...

New Glove infostealer malware bypasses Chrome’s cookie encryption
2024-11-14 20:47

​New Glove Stealer information-stealing malware can bypass Google Chrome's Application-Bound (App-Bound) encryption to steal browser cookies. [...]

New RustyAttr Malware Targets macOS Through Extended Attribute Abuse
2024-11-14 09:51

Threat actors have been found leveraging a new technique that abuses extended attributes for macOS files to smuggle a new malware called RustyAttr. The Singaporean cybersecurity company has...

Russian Hackers Exploit New NTLM Flaw to Deploy RAT Malware via Phishing Emails
2024-11-14 05:43

A newly patched security flaw impacting Windows NT LAN Manager (NTLM) was exploited as a zero-day by a suspected Russia-linked actor as part of cyber attacks targeting Ukraine. The vulnerability...

Iranian Hackers Use "Dream Job" Lures to Deploy SnailResin Malware in Aerospace Attacks
2024-11-13 07:14

The Iranian threat actor known as TA455 has been observed taking a leaf out of a North Korean hacking group's playbook to orchestrate its own version of the Dream Job campaign targeting the...

Volt Typhoon rebuilds malware botnet following FBI disruption
2024-11-12 15:49

The Chinese state-sponsored hacking group Volt Typhoon has begun to rebuild its "KV-Botnet" malware botnet after it was disrupted by law enforcement in January, according to researchers from...

North Korean Hackers Target macOS Using Flutter-Embedded Malware
2024-11-12 13:00

Threat actors with ties to the Democratic People's Republic of Korea (DPRK aka North Korea) have been found embedding malware within Flutter applications, marking the first time this tactic has...

Cybercriminals Use Excel Exploit to Spread Fileless Remcos RAT Malware
2024-11-11 06:13

Cybersecurity researchers have discovered a new phishing campaign that spreads a new fileless variant of known commercial malware called Remcos RAT. Remcos RAT "provides purchases with a wide...

Unpatched Mazda Connect bugs let hackers install persistent malware
2024-11-08 17:48

Attackers could exploit several vulnerabilities in the Mazda Connect infotainment unit, present in multiple car models including Mazda 3 (2014-2021), to execute arbitrary code with root permission. [...]

AndroxGh0st Malware Integrates Mozi Botnet to Target IoT and Cloud Services
2024-11-08 14:02

The threat actors behind the AndroxGh0st malware are now exploiting a broader set of security flaws impacting various internet-facing applications, while also deploying the Mozi botnet malware....