jbzfn, to python
@jbzfn@mastodon.social avatar

🐍 A nasty Python package continues a trend of targeting developers
➥ The Record

「 The target machine runs an application allowing the Discord bot “to secretly capture a photo using the webcam,” Checkmarx says. “The resulting image is then sent back to the Discord channel, without leaving any evidence of its presence after deleting the downloaded files.” 」

https://therecord.media/python-package-checkmarx-python-developers

#BlazeStealer #Python #Malware #Cybersecurity

YourAnonRiots, to random Japanese

🚨 Heads up! A new #malware, ZenRAT, is posing as Bitwarden password manager installation packages.

https://thehackernews.com/2023/09/new-zenrat-malware-targeting-windows.html

Make sure to download software from trusted sources only.

linuxmagazine, to linux
@linuxmagazine@fosstodon.org avatar
heisec, to security German

Malware: Mehr als 600 Millionen Downloads 2023 in Google Play

Kaspersky hat in diesem Jahr bereits mehr als 600 Millionen Malware-Downloads aus dem Google-Play-Store gezählt. Der bleibt aber sicherste Paketquelle.

https://www.heise.de/news/Malware-Mehr-als-600-Millionen-Downloads-2023-in-Google-Play-9358247.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

#Download #GooglePlay #GooglePlayStore #Kaspersky #Malware #Security #news

PogoWasRight, to nuclear

Yesterday, The Guardian reported that UK’s most hazardous nuclear site, Sellafield, has been hacked into by cyber groups closely linked to Russia and China.

But the British govt says that's not the case:

“Our monitoring systems are robust and we have a high degree of confidence that no such malware exists on our system,” Reuters quoted the government as saying.

“This was confirmed to the Guardian well in advance of publication, along with rebuttals to a number of other inaccuracies in their reporting,” the government added.

Guardian report: https://www.theguardian.com/business/2023/dec/04/sellafield-nuclear-site-hacked-groups-russia-china

Reuters report:
https://www.reuters.com/world/uk/britain-says-no-evidence-sellafield-nuclear-site-has-been-hacked-2023-12-04/

#databreach #malware #nuclear #infosec #cybersecurity

@campuscodi @briankrebs

securityaffairs, to hacking Italian
mr_phrazer, to ReverseEngineering

🔍 Beginner-Friendly Reverse Engineering Training – Starts February 10th!

In the week of February 10-17, I'll give a remote, beginner-friendly reverse engineering course in cooperation with @ringzer0 This online class is a comprehensive journey into binary program analysis, starting from the absolute basics of reverse engineering, progressing through data type reconstruction, and extending to C++ reverse engineering, malware analysis, and automation techniques.

Key Learning Objectives:

🚀 From Basics to Advanced: Learn reversing from scratch and understand the layers between machine code and high-level languages.

🛠️ Tool Mastery: Become proficient in using IDA, Ghidra, and GDB.

🧩 Code/Data Reconstruction: Learn to reconstruct complex code and data structures from machine code, up to reconstructing C++ class hierarchies.

🕵️ Malware Analysis: Gain strategies for analyzing complex binaries, such as nation-state malware samples.

✋ Hands-On Experience: Practical sessions to strengthen your reverse engineering skills.

Who Should Attend?

Ideal for cybersecurity experts, malware analysts, and forensic specialists looking to delve into reverse engineering and low-level program analysis.

📧 Register: https://ringzer0.training/trainings/reverse-engineering-binary-program-analysis.html

0x58, to Cybersecurity

📨 Latest issue of my curated #cybersecurity and #infosec list of resources for week #46/2023 is out! It includes the following and much more:

➝ 🔓 🇯🇵 #Toyota confirms breach after Medusa #ransomware threatens to leak data
➝ 🇺🇸 😂 Ransomware gang files #SEC complaint over victim’s undisclosed #breach
➝ 🔓 🪶 Attackers claim Plume Design, Inc data breach
➝ 🇺🇸 💰 #ICBC paid ransom after hack that disrupted markets, #cybercriminals say
➝ 🔓 #Dragos Says No Evidence of Breach After Ransomware Gang Claims Hack via Third Party
➝ 🔓 ✈️ Hackers swipe Booking.com, damage from attack is global
➝ 🇷🇺 🇺🇦 Russian #CyberEspionage Group Deploys #LitterDrifter USB #Worm in Targeted Attacks
➝ 🇮🇱 🇺🇸 Israeli Man Who Made $5M From Hacking Scheme Sentenced to Prison in US
➝ 🇫🇮 ⚖️ Alleged Extortioner of Psychotherapy Patients Faces Trial
➝ 🇺🇸 💸 #LockBit ransomware exploits #CitrixBleed in attacks, 10K servers exposed
➝ 🇺🇸 ⚖️ #IPStorm botnet with 23,000 proxies for malicious traffic dismantled
➝ 👶🏻 🧨 Teens with “digital bazookas” are winning the ransomware war, researcher laments
➝ 💸 #Ethereum feature abused to steal $60 million from 99K victims
➝ 🇩🇰 🇷🇺 #Denmark Hit With Largest #Cyberattack on Record
➝ 🇨🇳 🇰🇭 Chinese Hackers Launch Covert #Espionage Attacks on 24 Cambodian Organizations
➝ 🇲🇾 Major Phishing-as-a-Service Syndicate '#BulletProofLink' Dismantled by Malaysian Authorities
➝ 🇪🇺 🥳 EU Parliament committee rejects mass scanning of private and encrypted communications
➝ 🩹 #ICS Patch Tuesday: 90 Vulnerabilities Addressed by Siemens and Schneider Electric
➝ 🦠 🐍 27 Malicious #PyPI Packages with Thousands of Downloads Found Targeting IT Experts
🇻🇳 🇮🇳 Vietnamese Hackers Using New #Delphi-Powered #Malware to Target Indian Marketers
➝ 🔐 #Google Adds #Passkey Support to New Titan Security Key
➝ 🐛 Zero-Day Flaw in #Zimbra Email Software Exploited by Four Hacker Groups
➝ 🩹 #SAP Patches Critical Vulnerability in Business One Product
➝ 🐛 New #Reptar CPU flaw impacts Intel desktop and server systems
➝ 🐛 New #CacheWarp AMD #CPU attack lets hackers gain root in Linux VMs

📚 This week's recommended reading is: "Tribe of Hackers: Cybersecurity Advice from the Best Hackers in the World" by @marcusjcarey and Jennifer Jin

Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-462023

avoidthehack, to privacy

Targeted Ads are a Cybersecurity Risk

As malvertising continues to rise, increasingly delivering #malware and redirecting users to #phishing websites, more and more websites plead with visitors to disable their adblockers. Even Google has responded harshly to adblockers across its platforms...

Should you always disable your adblocker when asked? I don't think you should - targeted ads have shown to be quite the security risk on top of being invasive to your #privacy.

#cybersecurity #security #infosec #avoidthehack #ads #adblocking

https://avoidthehack.com/ads-cybersecurity-risk

mattburgess, to news

NEW: More cheap Android TV streaming devices with backdoors to China have been found. It's estimated 200 types of Android devices may have been impacted.

Human Security has unpicked the web of fraud attached to the devices. The boxes were running ad fraud, residential proxy services, creating fake Gmail and WhatsApp; and remote code installation. On top of this there was a linked ad fraud scheme impacting 39 apps on Android and iOS

Full story: https://www.wired.com/story/android-tv-streaming-boxes-china-backdoor/ #news #tech #cybersecurity #cyber #malware

YourAnonRiots, to macos Japanese

🚨 #macOS users beware! Atomic Stealer, a $1,000/month #malware, is now spreading through deceptive web browser updates via ClearFake.

https://thehackernews.com/2023/11/clearfake-campaign-expands-to-deliver.html

#cybersecurity #informationsecurity

heisec, to Cybersecurity German

Außergewöhnliche Malware nimmt westeuropäische Telkos ins Visier

Lua Dream ist ein mittels Lua modular aufgebauter Schädling, der es auf Telekommunikationsunternehmen abgesehen hat – und wahrscheinlich aus Asien stammt.

https://www.heise.de/news/Aussergewoehnliche-Malware-nimmt-westeuropaeische-Telkos-ins-Visier-9315204.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

#Cybersecurity #Malware #news

funes, to infosec

A couple weeks back we noticed an uptick of incidents from trojanized Advanced IP Installer's delivered due to . We tied it back to a group who were formerly a affiliate according to Mandiant.

You may remember articles circulating about Bing's AI providing malvertising links. This is from the same campaign.

https://www.connectwise.com/blog/cybersecurity/former-darkside-ransomware-affiliate-distributing-trojanized-installers-via-malvertising

eff, to random
@eff@mastodon.social avatar

This kid’s tablet came with bonus #malware, riskware, and an outdated parental control app. Device-makers have to do better. https://www.eff.org/deeplinks/2023/11/low-budget-should-not-mean-high-risk-kids-tablet-came-preloaded-sketchyware

YourAnonRiots, to cryptocurrency Japanese

🚨 New Threat Alert! BunnyLoader, the latest #malware-as-a-service, is up for sale in the dark web. It can steal your data, replace your #cryptocurrency addresses, and more.

https://thehackernews.com/2023/10/bunnyloader-new-malware-as-service.html

#infosec #cybersecurity #informationsecurity

spamhaus, to random

🎉​ And we’re on Mastodon!

If you’re new to The Spamhaus Project, check out our bio above 🔝​

Ultimately, we’re here to build a community. A community of like-minded individuals, who want to make the internet a safer place. On Mastodon, we’ll be sharing latest threat intelligence from our researchers and threat hunters, and we’d like to invite you to do the same….

Earlier this month, we launched our Threat Intel Community, giving anyone the ability to submit malicious domains, IPs, email source codes, or URLs to Spamhaus through our user-friendly portal.

If you’re curious to know more, read this blog:
https://www.spamhaus.org/news/article/821/want-to-submit-data-be-our-guest

Or visit the Threat Intel Community here:
https://submit.spamhaus.org

garry, to technology
@garry@mstdn.social avatar

Vulnerable Arm GPU drivers under active exploitation. Patches may not be available

'Devices believed to use the affected chips include the Google Pixel 7, Samsung S20 and S21, Motorola Edge 40, OnePlus Nord 2, Asus ROG Phone 6, Redmi Note 11, 12, Honor 70 Pro, RealMe GT, Xiaomi 12 Pro, Oppo Find X5 Pro, and Reno 8 Pro and some phones from Mediatek'

Android and Chromebook users should upgrade.

#technology #tech #security #privacy #hacking #malware #Android #Chromebook

https://arstechnica.com/security/2023/10/vulnerable-arm-gpu-drivers-under-active-exploitation-patches-may-not-be-available/

philofishal, to macos
redfrog, to github French

🚨 Malicious actors targeting accounts, posing as Dependabot contributors.

Goal: Steal passwords from developers and inject password-stealer code in files of projects, impacting end-users.

Learn more: https://thehackernews.com/2023/09/github-repositories-hit-by-password.html

PogoWasRight, to random

So an arrest was made in conjunction with the seizure of RagnarLocker's infrastructure and Tor leak site:

The "key target," who was arrested in Paris, is believed to be a developer of the malware:

https://www.europol.europa.eu/media-press/newsroom/news/ragnar-locker-ransomware-gang-taken-down-international-police-swoop

To all the agencies who cooperated on this: bravo!

ghost0x0, to android


whats interesting about this, is that its basically a tried and true attack of tricking the user.

throw a popup saying click me to update.. and user will click on it.

https://www.tomsguide.com/news/this-dangerous-android-malware-is-stealing-from-100-banking-apps-protect-yourself-now

publicvoit, (edited ) to firefox
@publicvoit@graz.social avatar

On my desktop , 99% of those malicious requests are blocked. On my mobile Firefox 97%.

Does your browser protect you and your data? Test yourself:
https://d3ward.github.io/toolz/adblock.html

0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2023 is out! It includes the following and much more:

➝ 🔓 ❌ TransUnion Denies After Hacker Publishes Allegedly Stolen Data
➝ 🔓 ⚖️ Hackers breached International Criminal Court’s systems last week
➝ 🔓 🤖 researchers accidentally exposed terabytes of internal sensitive data
➝ 🦠 💸 hits Storage with encryptor
➝ 🇮🇷 🇮🇱 Iranian Nation-State Actor OilRig Targets Israeli Organizations
➝ 🇮🇳 's biggest tech centers named as hotspots
➝ 🇫🇮 💊 Finnish Authorities Dismantle Notorious Dark Web Drug Marketplace
➝ 🇨🇦 🇷🇺 Canadian Government Targeted With Attacks by Pro- Group
➝ 🇨🇳 🇺🇸 Accuses U.S. of Decade-Long Campaign Against Servers
➝ 🇺🇸 🇨🇳 China's Malicious Cyber Activity Informing War Preparations, Says
➝ 🇨🇳 🦠 New Linux used in cyber espionage attacks
➝ 🇬🇧 🔐 UK Minister Warns Over End-to-End Encryption
➝ 🇺🇸 🇷🇺 One of the ’s most wanted hackers is trolling the U.S. government
➝ 🦠 🥸 Fake proof-of-concept exploit drops malware
➝ 🦠 📈 botnet activity surges 600x with stealthier malware variants
➝ 🦠 📡 Hackers backdoor providers with new HTTPSnoop malware
➝ 🦠 🐝 malware returns in new attacks abusing folders
➝ 🔐 launches support into general availability
➝ ☑️ 🐧 Free Download Manager releases script to check for malware
➝ 💬 🔐 adds quantum-resistant encryption to its messaging protocol
➝ 🍏 🔐 17 includes these new security and features
➝ 🩹 High-Severity Flaws Uncovered in Products and ISC BIND Server
➝ 🩹 😡 Incomplete disclosures by and create “huge blindspot” for 0-day hunters
➝ 🍏 🩹 Apple emergency updates fix 3 new zero-days exploited in attacks
➝ 🩹 fixes protection zero-day used in attacks
➝ 🩹 Patches High-Severity in FortiOS, FortiProxy, FortiWeb Products
➝ 🔓 Nearly 12,000 Found Vulnerable to Recently Disclosed RCE Vulnerability

📚 This week's recommended reading is: "Future Crimes: Everything Is Connected, Everyone Is Vulnerable and What We Can Do About It" by Marc Goodman

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-382023

r1cksec, to infosec

An interesting interview with a member of the ransomware group 8BASE🕵️‍♂️

https://intelcocktail.com/8base-interview

#infosec #cybersecurity #ransomware #malware #cybercrime

gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

A stark reminder that ransomware attackers don't give a damn about anyone but themselves.

Cancer treatments cancelled after Canadian hospitals hit by ransomware attack.

Read more in my article on the Bitdefender blog: https://www.bitdefender.com/blog/hotforsecurity/cancer-treatments-cancelled-after-canadian-hospitals-hit-by-ransomware-attack/

#cybersecurity #ransomware #databreach #malware

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • cubers
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • tacticalgear
  • osvaldo12
  • normalnudes
  • tester
  • cisconetworking
  • everett
  • GTA5RPClips
  • ethstaker
  • anitta
  • Leos
  • provamag3
  • modclub
  • lostlight
  • All magazines