InfoSec News 20241121
Top News
-
Now BlueSky hit with crypto scams as it crosses 20 million users
"As many more users are flocking to BlueSky from social media platforms like X/Twitter, so are threat actors."
TLP1 : Green
"As many more users are flocking to BlueSky from social media platforms like X/Twitter, so are threat actors."
TLP1 : Green
"Ransomware gangs are increasingly targeting weekends and holidays, when cybersecurity teams are typically less staffed, according to a new report from Semperis."
TLP1 : Green
"Spotify playlists and podcasts are being abused to push pirated software, game cheat codes, spam links, and "warez" sites."
TLP1 : Green
"In October 2024, Huntress analysts uncovered a previously unreported ransomware strain, dubbed SafePay, deployed across two distinct incidents. This ransomware has unique characteristics, including the use of .safepay as the encrypted file extension and a ransom note titled readme_safepay.txt."
"This is one of the more serious vulnerabilities that we have reported on in our 12 year history as a security provider for WordPress. This vulnerability affects Really Simple Security, formerly known as Really Simple SSL, installed on over 4 million websites, and allows an attacker to remotely gain full administrative access to a site running the plugin."
"A newly patched security flaw impacting Windows NT LAN Manager (NTLM) was exploited as a zero-day by a suspected Russia-linked actor as part of cyber attacks targeting Ukraine."
TLP1 : Green
"CYFIRMA recently discovered a new malware called “Wish Stealer” that targets Windows users by stealing sensitive information from various sources like Discord, web browsers, cryptocurrency wallets, and social media accounts."
"VMware has announced that its VMware Fusion and VMware Workstation desktop hypervisors are now free to everyone for commercial, educational, and personal use."
TLP1 : Green
"Wiz Research looks at phishing tactics, along with how to trace and investigate these campaigns."
TLP1 : Green
"Hunters’ Team AXON has identified and is currently monitoring an ongoing threat campaign, dubbed “VEILDrive”"
TLP1 : Green