Security News

QakBot Malware Resurfaces with New Tactics, Targeting the Hospitality Industry
2023-12-18 09:29

A new wave of phishing messages distributing the QakBot malware has been observed, more than three months after a law enforcement effort saw its infrastructure dismantled by infiltrating its...

Rhadamanthys Stealer malware evolves with more powerful features
2023-12-17 17:12

The developers of the Rhadamanthys information-stealing malware have recently released two major versions to add improvements and enhancements across the board, including new stealing capabilities and enhanced evasion. Rhadamanthys is a C++ information stealer that first emerged in August 2022, targeting email, FTP, and online banking service account credentials.

Qbot malware returns in campaign targeting hospitality industry
2023-12-17 15:09

The QakBot malware is once again being distributed in phishing campaigns after the botnet was disrupted by law enforcement over the summer. While a phishing service that was used to distribute the Qbot malware has seen activity since the disruption, there was no distribution of the QakBot malware until this past Monday, when the new phishing campaign started.

QNAP VioStor NVR vulnerability actively exploited by malware botnet
2023-12-16 16:17

A Mirai-based botnet named 'InfectedSlurs' is exploiting a remote code execution vulnerability in QNAP VioStor NVR devices to hijack and make them part of its DDoS swarm. The second zero-day vulnerability in the botnet's attacks is CVE-2023-47565, a high-severity OS command injection impacting QNAP VioStor NVR models running QVR firmware 4.x. QNAP published an advisory on December 7, 2023, explaining that the previously unknown issue was fixed in QVR firmware 5.x and later, which is available to all actively supported models.

New NKAbuse Malware Exploits NKN Blockchain Tech for DDoS Attacks
2023-12-15 05:25

A novel multi-platform threat called NKAbuse has been discovered using a decentralized, peer-to-peer network connectivity protocol known as NKN (short for New Kind of Network) as a communications...

New NKAbuse malware abuses NKN blockchain for stealthy comms
2023-12-14 22:15

A new Go-based multi-platform malware identified as 'NKAbuse' is the first malware abusing NKN technology for data exchange, making it a stealthy threat. NKN is a relatively new decentralized peer-to-peer network protocol leveraging blockchain technology to manage resources and maintain a secure and transparent model for network operations.

116 Malware Packages Found on PyPI Repository Infecting Windows and Linux Systems
2023-12-14 15:26

Cybersecurity researchers have identified a set of 116 malicious packages on the Python Package Index (PyPI) repository that are designed to infect Windows and Linux systems with a custom...

New Pierogi++ Malware by Gaza Cyber Gang Targeting Palestinian Entities
2023-12-14 14:01

A pro-Hamas threat actor known as Gaza Cyber Gang is targeting Palestinian entities using an updated version of a backdoor dubbed Pierogi. The findings come from SentinelOne, which has given the...

Iranian State-Sponsored OilRig Group Deploys 3 New Malware Downloaders
2023-12-14 12:30

The Iranian state-sponsored threat actor known as OilRig deployed three different downloader malware throughout 2022 to maintain persistent access to victim organizations located in Israel. The...

How to Analyze Malware’s Network Traffic in A Sandbox
2023-12-13 12:02

Malware analysis encompasses a broad range of activities, including examining the malware's network traffic. To be effective at it, it's crucial to understand the common challenges and how to...