Infosec News

InfoSec News 20241205

  • Publicado: Qui, 05/12/2024 - 13:18

Top News


  • Cloudflare’s developer domains increasingly abused by threat actors

"Cloudflare's 'pages.dev' and 'workers.dev' domains, used for deploying web pages and facilitating serverless computing, are being increasingly abused by cybercriminals for phishing and other malicious activities."

Link

InfoSec News 20241204

  • Publicado: Qua, 04/12/2024 - 14:17

Top News


  • Solana Web3.js Library Compromised in Targeted Supply Chain Attack

"A sophisticated supply chain attack has been identified within the widely-used @solana/web3.js JavaScript library, potentially jeopardizing the security of numerous developers and users within the Solana ecosystem."

Link

InfoSec News 20241203

  • Publicado: Ter, 03/12/2024 - 13:48

Top News


  • Unveiling RevC2 and Venom Loader

"Venom Spider, also known as GOLDEN CHICKENS, is a threat actor known for offering Malware-as-a-Service (MaaS) tools like VenomLNK, TerraLoader, TerraStealer, and TerraCryptor. These tools have been utilized by other threat groups such as FIN6 and Cobalt in the past. Recently, Zscaler ThreatLabz uncovered two significant campaigns leveraging Venom Spider's MaaS tools between August and October 2024."

InfoSec News 20241202

  • Publicado: Seg, 02/12/2024 - 15:25

Top News


  • SmokeLoader Malware Campaign Targets Companies in Taiwan

"A sophisticated malware campaign leveraging SmokeLoader has been observed targeting Taiwanese companies across manufacturing, healthcare and IT sectors."

Link

TLP1 : Green

InfoSec News 20241129

  • Publicado: Sex, 29/11/2024 - 15:13

Top News


  • Zero-Day in Active Directory Certificate Services: Researcher Exposes CVE-2024-49019 with PoC

"Security researchers from TrustedSec have uncovered a critical zero-day vulnerability, CVE-2024-49019, affecting Active Directory Certificate Services (AD CS). This flaw exploits a feature of version 1 certificate templates, allowing attackers with enrollment rights to escalate privileges dramatically."

InfoSec News 20241127

  • Publicado: Qua, 27/11/2024 - 14:46

Top News


  • New NachoVPN attack uses rogue VPN servers to install malicious updates

"A set of vulnerabilities dubbed "NachoVPN" allows rogue VPN servers to install malicious updates when unpatched Palo Alto and SonicWall SSL-VPN clients connect to them."

Link

InfoSec News 20241126

  • Publicado: Ter, 26/11/2024 - 14:05

Top News


  • Three-Quarters of Black Friday Spam Emails Identified as Scams

"Consumers have been warned that 77% of Black Friday-themed spam emails in 2024 have been identified as scams, with the remainder marketing lures, according to new figures from Bitdefender."

Link

TLP1 : Green

InfoSec News 20241125

  • Publicado: Seg, 25/11/2024 - 13:49

Top News


  • CVE-2024-11477: 7-Zip Vulnerability Allows Remote Code Execution, Update Now!

"A high-severity vulnerability (CVE-2024-11477) has been discovered in the popular file archiver 7-Zip, potentially allowing attackers to execute malicious code on vulnerable systems."

Link

InfoSec News 20241122

  • Publicado: Sex, 22/11/2024 - 14:51

Top News


  • PyPI Attack: ChatGPT, Claude Impersonators Deliver JarkaStealer via Python Libraries

"Cybersecurity researchers have discovered two malicious packages uploaded to the Python Package Index (PyPI) repository that impersonated popular artificial intelligence (AI) models like OpenAI ChatGPT and Anthropic Claude to deliver an information stealer called JarkaStealer."

Link

Páginas