Infosec News

InfoSec News 20250728

  • Publicado: Seg, 28/07/2025 - 15:12

Top News


  • New VoIP Botnet Targets Routers Using Default Passwords

"Cybersecurity researchers have uncovered a sophisticated botnet operation exploiting VoIP-enabled routers through default password attacks, with initial activity concentrated in rural New Mexico before expanding globally to compromise approximately 500 devices."

Link

TLP1 : Green

InfoSec News 20250724

  • Publicado: Qui, 24/07/2025 - 14:52

Top News


  • Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched Systems

"Microsoft has revealed that one of the threat actors behind the active exploitation of SharePoint flaws is deploying Warlock ransomware on targeted systems."

Link

TLP1 : Green

InfoSec News 20250722

  • Publicado: Ter, 22/07/2025 - 15:17

Top News


  • Microsoft: Windows Server KB5062557 causes cluster, VM issues

"Microsoft is asking businesses to reach out for support to mitigate a known issue causing Cluster service and VM restart issues after installing this month's Windows Server 2019 security updates."

Link

TLP1 : Green

InfoSec News 20250721

  • Publicado: Seg, 21/07/2025 - 14:41

Top News


  • Arch Linux pulls AUR packages that installed Chaos RAT malware

"Arch Linux has pulled three malicious packages uploaded to the Arch User Repository (AUR) were used to install the CHAOS remote access trojan (RAT) on Linux devices."

Link

TLP1 : Green

InfoSec News 20250718

  • Publicado: Sex, 18/07/2025 - 15:10

Top News


  • LameHug malware uses AI LLM to craft Windows data-theft commands in real-time

"A novel malware family named LameHug is using a large language model (LLM) to generate commands to be executed on compromised Windows systems."

Link

TLP1 : Green

InfoSec News 20250716

  • Publicado: Qua, 16/07/2025 - 15:05

Top News


  • Hyper-Volumetric DDoS Attacks Reach Record 7.3 Tbps, Targeting Key Global Sectors

"Cloudflare on Tuesday said it mitigated 7.3 million distributed denial-of-service (DDoS) attacks in the second quarter of 2025, a significant drop from 20.5 million DDoS attacks it fended off the previous quarter."

Link

TLP1 : Green

InfoSec News 20250711

  • Publicado: Sex, 11/07/2025 - 14:59

Top News


  • Fake Gaming and AI Firms Push Malware on Cryptocurrency Users via Telegram and Discord

"Cryptocurrency users are the target of an ongoing social engineering campaign that employs fake startup companies to trick users into downloading malware that can drain digital assets from both Windows and macOS systems."

Link

TLP1 : Green

InfoSec News 20250707

  • Publicado: Seg, 07/07/2025 - 14:33

Top News


  • Hackers Abuse Legitimate Inno Setup Installer to Deliver Malware

"Cybercriminals are increasingly weaponizing legitimate software installer frameworks like Inno Setup to distribute malware, turning user-friendly tools into covert vehicles for malicious payloads."

Link

TLP1 : Green

InfoSec News 20250704

  • Publicado: Sex, 04/07/2025 - 13:34

Top News


  • Researchers Defeat Content Security Policy Protections via HTML Injection

"In a breakthrough that challenges the perceived safety of nonce-based Content Security Policy (CSP), security researchers have demonstrated a practical method to bypass these protections by combining HTML injection, CSS-based nonce leakage, and browser cache manipulation."

Link

Páginas