PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Researchers Uncover 'Hermit' Android Spyware Used in Kazakhstan, Syria, and Italy

vendredi 17 juin 2022 à 16:12
An enterprise-grade surveillanceware dubbed Hermit has been put to use by entities operating from within Kazakhstan, Syria, and Italy over the years since 2019, new research has revealed. Lookout attributed the spy software, which is equipped to target both Android and iOS, to an Italian company named RCS Lab S.p.A and Tykelab Srl, a telecom services provider which it suspects to be a front

Reimagine Hybrid Work: Same CyberSec in Office and at Home

vendredi 17 juin 2022 à 15:30
It was first the pandemic that changed the usual state of work - before, it was commuting, working in the office & coming home for most corporate employees. Then, when we had to adapt to the self-isolation rules, the work moved to home offices, which completely changed the workflow for many businesses.As the pandemic went down, we realized success never relied on where the work was done. Whether

Chinese Hackers Exploited Sophos Firewall Zero-Day Flaw to Target South Asian Entity

vendredi 17 juin 2022 à 11:39
A sophisticated Chinese advanced persistent threat (APT) actor exploited a critical security vulnerability in Sophos' firewall product that came to light earlier this year to infiltrate an unnamed South Asian target as part of a highly-targeted attack. "The attacker implement[ed] an interesting web shell backdoor, create[d] a secondary form of persistence, and ultimately launch[ed] attacks

Over a Million WordPress Sites Forcibly Updated to Patch a Critical Plugin Vulnerability

vendredi 17 juin 2022 à 11:10
WordPress websites using a widely used plugin named Ninja Forms have been updated automatically to remediate a critical security vulnerability that's suspected of having been actively exploited in the wild. The issue, which relates to a case of code injection, is rated 9.8 out of 10 for severity and affects multiple versions starting from 3.0. It has been fixed in 3.0.34.2, 3.1.10, 3.2.28,

BlackCat Ransomware Gang Targeting Unpatched Microsoft Exchange Servers

jeudi 16 juin 2022 à 15:23
Microsoft is warning that the BlackCat ransomware crew is leveraging exploits for unpatched Exchange server vulnerabilities to gain access to targeted networks. Upon gaining an entry point, the attackers swiftly moved to gather information about the compromised machines, followed by carrying out credential theft and lateral movement activities, before harvesting intellectual property and