Security News

Malicious ads exploited Internet Explorer zero day to drop malware
2024-10-16 13:59

The North Korean hacking group ScarCruft launched a large-scale attack in May that leveraged an Internet Explorer zero-day flaw to infect targets with the RokRAT malware and exfiltrate data. [...]

North Korean ScarCruft Exploits Windows Zero-Day to Spread RokRAT Malware
2024-10-16 10:50

The North Korean threat actor known as ScarCruft has been linked to the zero-day exploitation of a now-patched security flaw in Windows to infect devices with malware known as RokRAT. The...

Astaroth Banking Malware Resurfaces in Brazil via Spear-Phishing Attack
2024-10-16 07:20

A new spear-phishing campaign targeting Brazil has been found delivering a banking malware called Astaroth (aka Guildma) by making use of obfuscated JavaScript to slip past security guardrails....

New Malware Campaign Uses PureCrypter Loader to Deliver DarkVision RAT
2024-10-15 15:20

Cybersecurity researchers have disclosed a new malware campaign that leverages a malware loader named PureCrypter to deliver a commodity remote access trojan (RAT) called DarkVision RAT. The...

New Linux Variant of FASTCash Malware Targets Payment Switches in ATM Heists
2024-10-15 14:43

North Korean threat actors have been observed using a Linux variant of a known malware family called FASTCash to steal funds as part of a financially-motivated campaign. The malware is "installed...

Researchers Uncover Hijack Loader Malware Using Stolen Code-Signing Certificates
2024-10-15 06:43

Cybersecurity researchers have disclosed a new malware campaign that delivers Hijack Loader artifacts that are signed with legitimate code-signing certificates. French cybersecurity company...

New FASTCash malware Linux variant helps steal money from ATMs
2024-10-14 22:15

North Korean hackers are using a new Linux variant of the FASTCash malware to infect the payment switch systems of financial institutions and perform unauthorized cash withdrawals. [...]

TrickMo malware steals Android PINs using fake lock screen
2024-10-14 17:34

Forty new variants of the TrickMo Android banking trojan have been identified in the wild, linked to 16 droppers and 22 distinct command and control (C2) infrastructures, with new features...

Perfectl Malware
2024-10-14 11:06

Perfectl in an impressive piece of malware: The malware has been circulating since at least 2021. It gets installed by exploiting more than 20,000 common misconfigurations, a capability that may...

OpenAI confirms threat actors use ChatGPT to write malware
2024-10-12 14:09

OpenAI has disrupted over 20 malicious cyber operations abusing its AI-powered chatbot, ChatGPT, for debugging and developing malware, spreading misinformation, evading detection, and conducting...