Infosec News

InfoSec News 20250603

  • Publicado: Ter, 03/06/2025 - 17:42

Top News


  • Lyrix Ransomware Targets Windows Users with Advanced Evasion Techniques

"A formidable new strain of ransomware, dubbed Lyrix, has recently surfaced, posing a significant threat to Windows users worldwide."

Link

TLP1 : Green

InfoSec News 20250530

  • Publicado: Sex, 30/05/2025 - 14:01

Top News


  • New Windows RAT Evades Detection for Weeks Using Corrupted DOS and PE Headers

"Cybersecurity researchers have taken the wraps off an unusual cyber attack that leveraged malware with corrupted DOS and PE headers, according to new findings from Fortinet."

Link

TLP1 : Green

InfoSec News 20250527

  • Publicado: Ter, 27/05/2025 - 14:23

Top News


  • Hackers Exploit HTTP/2 Flaw to Launch Arbitrary Cross-Site Scripting Attacks

"A groundbreaking study from Tsinghua University and Zhongguancun Laboratory has uncovered critical vulnerabilities in modern web infrastructure, revealing that HTTP/2 server push and Signed HTTP Exchange (SXG) features can be exploited to bypass the Same-Origin Policy (SOP)—a cornerstone of web security."

Link

InfoSec News 20250526

  • Publicado: Seg, 26/05/2025 - 14:36

Top News


  • ViciousTrap Uses Cisco Flaw to Build Global Honeypot from 5,300 Compromised Devices

"Cybersecurity researchers have disclosed that a threat actor codenamed ViciousTrap has compromised nearly 5,300 unique network edge devices across 84 countries and turned them into a honeypot-like network."

Link

TLP1 : Green

InfoSec News 20250523

  • Publicado: Sex, 23/05/2025 - 14:35

Top News


  • Hackers use fake Ledger apps to steal Mac users’ seed phrases

"Cybercriminal campaigns are using fake Ledger apps to target macOS users and their digital assets by deploying malware that attempts to steal seed phrases that protect access to digital cryptocurrency wallets."

Link

TLP1 : Green

InfoSec News 20250522

  • Publicado: Qui, 22/05/2025 - 15:05

Top News


  • FTC finalizes order requiring GoDaddy to secure hosting services

"The U.S. Federal Trade Commission (FTC) has finalized an order requiring web hosting giant GoDaddy to secure its services to settle charges of data security failures that led to several data breaches since 2018."

Link

TLP1 : Green

InfoSec News 20250521

  • Publicado: Qua, 21/05/2025 - 14:50

Top News


  • RVTools hit in supply chain attack to deliver Bumblebee malware

"The company also states that the Dell-managed sites, Robware.net and RVTools.com, were taken offline as they are being targeted in DDoS attacks."

Link

TLP1 : Green

InfoSec News 20250520

  • Publicado: Ter, 20/05/2025 - 14:26

Top News


  • Malicious PyPI Packages Exploit Instagram and TikTok APIs to Validate User Accounts

"Cybersecurity researchers have uncovered malicious packages uploaded to the Python Package Index (PyPI) repository that act as checker tools to validate stolen email addresses against TikTok and Instagram APIs."

Link

TLP1 : Green

InfoSec News 20250519

  • Publicado: Seg, 19/05/2025 - 14:27

Top News


  • New 'Defendnot' tool tricks Windows into disabling Microsoft Defender

"A new tool called 'Defendnot' can disable Microsoft Defender on Windows devices by registering a fake antivirus product, even when no real AV is installed."

Link

TLP1 : Green

Páginas