PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Researchers Expose Mars Stealer Malware Campaign Using Google Ads to Spread

mercredi 30 mars 2022 à 16:05
A nascent information stealer called Mars has been observed in campaigns that take advantage of cracked versions of the malware to steal information stored in web browsers and cryptocurrency wallets. "Mars Stealer is being distributed via social engineering techniques, malspam campaigns, malicious software cracks, and keygens," Morphisec malware researcher Arnold Osipov said in a report

Honda’s Keyless Access Bug Could Let Thieves Remotely Unlock and Start Vehicles

mercredi 30 mars 2022 à 13:45
A duo of researchers has released a proof-of-concept (PoC) demonstrating the ability for a malicious actor to remote lock, unlock, and even start Honda and Acura vehicles by means of what's called a replay attack. The attack is made possible, thanks to a vulnerability in its remote keyless system (CVE-2022-27254) that affects Honda Civic LX, EX, EX-L, Touring, Si, and Type R models manufactured

Improve Your Hacking Skills with 9 Python Courses for Just $39

mercredi 30 mars 2022 à 12:25
For anyone with interest in cybersecurity, learning Python is a must. The language is used extensively in white hat hacking, and professionals use Python scripts to automate tests. It also has a use in the “soft” side of cybersecurity — like scraping the web for compromised data and detecting bugs.  Featuring nine full-length video courses, The Complete 2022 Python Programmer Bundle helps you

LAPSUS$ Claims to Have Breached IT Firm Globant; Leaks 70GB of Data

mercredi 30 mars 2022 à 10:41
The LAPSUS$ data extortion gang announced their return on Telegram after a week-long "vacation," leaking what they claim is data from software services company Globant. "We are officially back from a vacation," the group wrote on their Telegram channel – which has nearly around 54,000 members as of writing – posting images of extracted data and credentials belonging to the company's DevOps

CISA Warns of Ongoing Cyber Attacks Targeting Internet-Connected UPS Devices

mercredi 30 mars 2022 à 08:03
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the Department of Energy (DoE) are jointly warning of attacks against internet-connected uninterruptible power supply (UPS) devices by means of default usernames and passwords. "Organizations can mitigate attacks against their UPS devices, which provide emergency power in a variety of applications when normal power sources are