New msaRAT malware uses Chrome, Edge browsers to route C2 traffic
The Chaos ransomware gang is using a new backdoor dubbed msaRAT that hides command-and-control (C2) communication by routing it through the Chrome or Edge browsers. […]
The Chaos ransomware gang is using a new backdoor dubbed msaRAT that hides command-and-control (C2) communication by routing it through the Chrome or Edge browsers. […]
Eine Kampagne gegen deutsche Anwaltskanzleien kombiniert KI-gestützte Telefonate, gestohlene Identitäten und mehrstufige Schadsoftware, ohne technische Schwachstellen auszunutzen. Was dahinter steckt, wo klassische Erkennungslogik versagt und was Security-Teams jetzt konkret tun müssen.
Part of a larger toolkit, HollowGraph uses a compromised 365 account’s calendar as a two-way dead-drop. The post New HollowGraph Malware Abuses Microsoft 365 Calendar for C&C Communication appeared first on SecurityWeek.
SonicWall SMA Flaws Lead to KNUCKLEBALL Malware SonicWall SMA 1000 appliances were compromised in a zero-day campaign involving custom malware, root-level access, credential gathering, and attempts to move deeper into vi
A malicious component dubbed HollowGraph uses the calendar feature in compromised Microsoft 365 mailboxes as a command-and-control channel to receive attacker commands and exfiltrate stolen data. […]
VMware Avi Load Balancer: Kritische Lücke erlaubt Umgehung von AnmeldungAlertheise Security Quelle: Heise Security Ticker
A new macOS information-stealing malware dubbed ClickLock terminates all visible processes to force users into entering their system login password. […]
Federal law enforcement has unmasked and arrested a 21-year-old Floridian who allegedly played a part in smuggling hundreds of thousands of dollars from victims‘ wallets by installing crypto-stealing malware into Steam games, according to a new report. As reported by Decrypt (via Yahoo News), Zyaire Dontaevious Zamarion Wilkins was arrested on July 14 and charged […]
The new macOS malware has targeted at least 100 users to steal their passwords and cryptocurrency. The post ‘ClickLock Stealer’ Bypasses macOS Security With Social Engineering, Process Killing appeared first on SecurityWeek.
Bitdefender researchers show how Windows bind links can create conflicting filesystem views to hide malware from endpoint security products. The post Windows Bind Link Attacks Can Hide Malware From EDR Tools appeared first on SecurityWeek.