Cyber News - Page 20

Home > Cyber News

This category contains informative articles and news.
Cyber News about data breaches, online privacy and security, computer security threats, cybersecurity reports, vulnerability reports. News about the latest malware attacks.
Hot news about the security of Microsoft (Patch Tuesdays), Google, Android, Apple, Linux, and other big companies and software vendors.

CYBER NEWS
CVE-2022-22587

Apple Addresses Two Zero-Days (CVE-2022-22587, CVE-2022-22594)

Apple recently released new versions of its operating systems – iOS 15.3 and macOS Monterey 12.2, which contained a number of fixes, including two zero-days. CVE-2022-22587 The first zero-day is related to memory corruption, and could allow a malicious app…

CYBER NEWS
CVE-2021-4034

CVE-2021-4034: 12-Year-Old PolKit Linux Vulnerability Discovered

CVE-2021-4034 PolKit Vulnerability CVE-2021-4034 is a new vulnerability detected in PolKit, a component for controlling system-wide privileges in Unix-like operating systems. The vulnerability was discovered in Polkit’s pkexec, a SUID-root program installed by default on every major Linux distribution. The…

CYBER NEWS
DazzleSpy (MACMA) macOS Malware-sensorstechforum

DazzleSpy (MACMA) macOS Malware Used in Watering Hole Attacks

Cybersecurity researchers detected a previously unknown macOS malware, codenamed DazzleSpy by ESET and MACMA by Google. The attack itself is based on a WebKit exploit used to compromise Mac users. The payload appears to be a new malware family, specifically…

CYBER NEWS
BRATA-Android-Banker-sensorstechforum.

BRATA Android Trojan Capable of Monitoring Bank Account Activity

BRATA is the name of an Android banking trojan that security researchers have been observing for a while. In a new report compiled by cybersecurity firm Cleafy, new information about the banker has been revealed. Threat actors have been using…

CYBER NEWS
CVE-2021-45467-and-CVE-2021-45466-sensorstechforum

CVE-2021-45467 and CVE-2021-45466 CWP Flaws Expose Linux Servers

Two vulnerabilities were discovered in Control Web Panel (CWP) – a widely-used web hosting management platform utilized by more than 200,000 servers. The flaws could allow code execution as root on Linux servers, and were discovered by Octagon Network researcher…

CYBER NEWS
DTPacker

Unusual Malware: DTPacker Is Both Loader and Packer

Security researchers discovered a new malware packer and loader. Dubbed DTPacker, the payload decoding uses a fixed password that contains former U.S. president Donald Trump’s name, according to Proofpoint. A notable element of the attacks associated with DTPacker is that…

CYBER NEWS
CVE-2022-21658-High-Severity-Vulnerability-in-Rust-Language.jpg

CVE-2022-21658: High Severity Vulnerability in Rust Language

A new high severity vulnerability in the Rust programming language has been reported. The flaw could be exploited to purge files and directories from an exposed system without the need of authorization. “The Rust Security Response WG was notified that…

CYBER NEWS
bhunt cryptowallet stealer

BHUNT Crypto Wallet Stealer Targets Cryptocurrency Users Worldwide

Security researchers recently spotted a new modular stealer written in .NET and capable of exfiltrating cryptocurrency wallets, including Atomic, Exodus, Ethereum, Jazz, Bitcoin, and Litecoin wallets. The malicious campaign, targeting Australia, Egypt, Germany, India, Indonesia, Japan, Malaysia, Norway, Singapore, South…

CYBER NEWS
white-rabbit-ransomware-sensorstechforum

New White Rabbit Ransomware Shows Affiliation to FIN8 APT

There’s a new ransomware family spotted in the wild. Called White Rabbit, the ransomware was noticed by Trend Micro researchers in silent attacks against a US bank in December 2021. It appears that the threat uses a page from the…

CYBER NEWS
CVE-2021-44757: Authentication Bypass Flaw in Zoho Desktop Central

CVE-2021-44757: Authentication Bypass Flaw in Zoho Desktop Central

An authentication bypass vulnerability was recently identified and patched in Zoho Desktop Central and Desktop Central MSP. CVE-2021-44757: Authentication Bypass Vulnerability in Zoho Desktop Central Known as CVE-2021-44757, the flaw has now been addressed and released in the company’s latest…

CYBER NEWS
VPNLab taken down

Europol Takes Down VPNLab, Hackers’ Favorite VPN Service

There’s a solid win for law enforcement in the battle with cybercriminals. Apparently, according to an official Europol statement, law enforcement authorities took action against the criminal misuse of VPN services, as they targeted the users and infrastructure of VPNLab.net.…

CYBER NEWS
North Korea-Linked Lazarus APT Hackers Stole $400M in Cryptocurrency

North Korea-Linked Lazarus APT Hackers Stole $400M in Cryptocurrency

According to a Chainanalysis report, North Korean hackers had a very successful 2021 year. As a result of launching at least seven large-scale attacks against cryptocurrency platforms, they made approximately $400 million worth of digital assets. Targets of the attacks…

CYBER NEWS
sysjoker malware

SysJoker Backdoor Targets macOS, Windows and Linux Users

Security researchers reported a new backdoor capable of targeting Windows, macOS, and Linux operating systems. SysJoker Backdoor Technical Overview Called SysJoker, the multi-platform malware is currently not detected by any of the security engines in VirusTotal. SysJoker was discovered by…

CYBER NEWS
SilentXMRMiner Hides in Torrents of Spiderman: No Way Home Movie

SilentXMRMiner Hides in Torrents of Spiderman: No Way Home Movie

One of the latest malicious campaigns detected in the wild is taking advantage of the new Spiderman: No Way Home movie. SilentXMRMiner Hides in Spiderman Movie ReasonLabs researchers recently detected a Monero miner in a torrent download of the Spider-Man:…

CYBER NEWS
Half a Billion Stolen Passwords Discovered in Open Cloud Server

Half a Billion Stolen Passwords Discovered in Open Cloud Server

Half a billion stolen credentials were discovered in a compromised cloud storage facility, according to the National Crime Agency’s National Cyber Crime Unit in the U.K. Since the data came from various sources and couldn’t be linked to a specific…

CYBER NEWS
Meta (Facebook) Files Lawsuit Against 39,000 Phishing Sites

Meta (Facebook) Files Lawsuit Against 39,000 Phishing Sites

Meta, formerly Facebook, has filed a federal lawsuit in California court to disrupt phishing attacks, according to a company’s statement. Meta Files Lawsuit Against Phishing The purpose of the lawsuit is to fight phishing attacks that aim to obtain users’…

CYBER NEWS
35,000 Java Packages Affected by Log4j Exploit, Google Says

35,000 Java Packages Affected by Log4j Exploit, Google Says

35,000 Java Packages Impacted by the Log4j Vulnerabilities Google says that more than 35,000 Java packages are currently impacted by the Log4j vulnerabilities, “with widespread fallout across the software industry.” This amounts to more than 8% of the Maven Central…

CYBER NEWS
CVE-2021-22057: 2FA Issue in VMware Workspace ONE Access

CVE-2021-22057: 2FA Issue in VMware Workspace ONE Access

A new VMware vulnerability should be patched immediately to avoid any exploitation. CVE-2021-22057 in VMware Workspace ONE Access CVE-2021-22057 is a critical vulnerability in VMware Workspace ONE Access that specifically affects its two factor authentication (2FA) processing component. Currently, little…

CYBER NEWS
PseudoManuscrypt Spyware Distributed in Pirated Software

Beware: PseudoManuscrypt Spyware Distributed in Pirated Software

Security researchers detected a new mass malware campaign associated with the previously known Manuscrpypt loader, which is part of Lazarus APT group arsenal. The discovery comes from Kaspersky’s Secure List. “Curiously, the data exfiltration channel of the malware uses an…

CYBER NEWS
Twizt, New Variant of Phorpiex Botnet, Used in Crypto-Clipping Attacks

Twizt, New Variant of Phorpiex Botnet, Used in Crypto-Clipping Attacks

Phorpiex is a well-known malware that has been operating at least since 2016, initially known as a botnet using the IRC protocol. A couple of years later, the botnet’s infrastructure changed to Tldr – a loader controlled via HTTP. The…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree