Security News

Five Scattered Spider suspects indicted for phishing spree and crypto heists
2024-11-21 01:29

DoJ also shutters allleged crimeware and credit card mart PopeyeTools The US Department of Justice has issued an indictment that names five people accused of stealing millions in cryptocurrency –...

Phishing emails increasingly use SVG attachments to evade detection
2024-11-17 16:25

Threat actors increasingly use Scalable Vector Graphics (SVG) attachments to display phishing forms or deploy malware while evading detection. [...]

Russian Hackers Exploit New NTLM Flaw to Deploy RAT Malware via Phishing Emails
2024-11-14 05:43

A newly patched security flaw impacting Windows NT LAN Manager (NTLM) was exploited as a zero-day by a suspected Russia-linked actor as part of cyber attacks targeting Ukraine. The vulnerability...

GoIssue phishing tool targets GitHub developer credentials
2024-11-13 13:36

Researchers discovered GoIssue, a new phishing tool targeting GitHub users, designed to extract email addresses from public profiles and launch mass email attacks. Marketed on a cybercrime forum,...

New Phishing Tool GoIssue Targets GitHub Developers in Bulk Email Campaigns
2024-11-12 14:00

Cybersecurity researchers are calling attention to a new sophisticated tool called GoIssue that can be used to send phishing messages at scale targeting GitHub users. The program, first marketed...

Beware of phishing emails delivering backdoored Linux VMs!
2024-11-05 13:54

Unknown attackers are trying to trick Windows users into spinning up a custom Linux virtual machine (VM) with a pre-configured backdoor, Securonix researchers have discovered. The campaign The...

Windows infected with backdoored Linux VMs in new phishing attacks
2024-11-04 15:53

A new phishing campaign dubbed 'CRON#TRAP' infects Windows with a Linux virtual machine that contains a built-in backdoor to give stealthy access to corporate networks. [...]

New Phishing Kit Xiū gǒu Targets Users Across Five Countries With 2,000 Fake Sites
2024-11-01 03:50

Cybersecurity researchers have disclosed a new phishing kit that has been put to use in campaigns targeting Australia, Japan, Spain, the U.K., and the U.S. since at least September 2024. Netcraft...

Midnight Blizzard Escalates Spear-Phishing Attacks On Over 100 Organizations
2024-10-31 18:10

Russian hackers, known as Midnight Blizzard, launch targeted spear-phishing on U.S. officials, exploiting RDP files to gain access to data.

Russian spies use remote desktop protocol files in unusual mass phishing drive
2024-10-30 12:40

The prolific Midnight Blizzard crew cast a much wider net in search of scrummy intel Microsoft says a mass phishing campaign by Russia's foreign intelligence services (SVR) is now in its second...