Infosec News

InfoSec News 20231031

  • Publicado: Ter, 31/10/2023 - 13:32

Top News


  • Malicious NuGet Packages Caught Distributing SeroXen RAT Malware

"Cybersecurity researchers have uncovered a new set of malicious packages published to the NuGet package manager using a lesser-known method for malware deployment."

Link

TLP1 : Green

InfoSec News 20231030

  • Publicado: Seg, 30/10/2023 - 15:29

Top News


  • ServiceNow Data Exposure: A Wake-Up Call for Companies

"Earlier this week, ServiceNow announced on its support site that misconfigurations within the platform could result in "unintended access" to sensitive data. For organizations that use ServiceNow, this security exposure is a critical concern that could have resulted in major data leakage of sensitive corporate data. ServiceNow has since taken steps to fix this issue. "

Link

InfoSec News 20231027

  • Publicado: Sex, 27/10/2023 - 13:51

Top News


  • France says Russian state hackers breached numerous critical networks

"The Russian APT28 hacking group (aka 'Strontium' or 'Fancy Bear') has been targeting government entities, businesses, universities, research institutes, and think tanks in France since the second half of 2021."

Link

TLP1 : Green

InfoSec News 20231026

  • Publicado: Qui, 26/10/2023 - 15:13

Top News


  • Record-Breaking 100 Million RPS DDoS Attack Exploits HTTP/2 Rapid Reset Flaw

"Cloudflare on Thursday said it mitigated thousands of hyper-volumetric HTTP distributed denial-of-service (DDoS) attacks that exploited a recently disclosed flaw called HTTP/2 Rapid Reset, 89 of which exceeded 100 million requests per second (RPS)."

Link

InfoSec News 20231025

  • Publicado: Qua, 25/10/2023 - 14:56

Top News


  • Malvertising Campaign Targets Brazil's PIX Payment System with GoPIX Malware

"The popularity of Brazil's PIX instant payment system has made it a lucrative target for threat actors looking to generate illicit profits using a new malware called GoPIX."

Link

TLP1 : Green

InfoSec News 20231024

  • Publicado: Ter, 24/10/2023 - 15:38

Top News


  • Backdoor Implant on Hacked Cisco Devices Modified to Evade Detection

"The backdoor implanted on Cisco devices by exploiting a pair of zero-day flaws in IOS XE software has been modified by the threat actor so as to escape visibility via previous fingerprinting methods."

Link

InfoSec News 20231023

  • Publicado: Seg, 23/10/2023 - 18:35

Top News


  • Quasar RAT Leverages DLL Side-Loading to Fly Under the Radar

"The open-source remote access trojan known as Quasar RAT has been observed leveraging DLL side-loading to fly under the radar and stealthily siphon data from compromised Windows hosts."

Link

TLP1 : Green

InfoSec News 20231020

  • Publicado: Sex, 20/10/2023 - 21:58

Top News


  • Malvertisers Using Google Ads to Target Users Searching for Popular Software

"Details have emerged about a malvertising campaign that leverages Google Ads to direct users searching for popular software to fictitious landing pages and distribute next-stage payloads."

Link

InfoSec News 202310119

  • Publicado: Qui, 19/10/2023 - 16:38

Top News


  • Google Play Protect Introduces Real-Time Code-Level Scanning for Android Malware

"Google has announced an update to its Play Protect with support for real-time scanning at the code level to tackle novel malicious apps prior to downloading and installing them on Android devices."

Link

InfoSec News 20231018

  • Publicado: Qua, 18/10/2023 - 14:57

Top News


  • Qubitstrike Targets Jupyter Notebooks with Crypto Mining and Rootkit Campaign

"A threat actor, presumably from Tunisia, has been linked to a new campaign targeting exposed Jupyter Notebooks in a two-fold attempt to illicitly mine cryptocurrency and breach cloud environments."

Link

Páginas