
Blog Series
Cybersecurity News
- No categories

CISA orders Federal agencies to...
The Cybersecurity and Infrastructure Security Agency (CISA) has directed government agencies to address security flaws used in zero-day attacks during recent incidents in which commercial spyware was installed on mobile...
AlienFox toolset used to steal...
A new modular toolkit, AlienFox, allows malicious actors to harvest credentials from multiple cloud service providers, according to SentinelLabs. The toolset is available for sale and primarily distributed on Telegram...
Multiple malware bothers targets Cacti...
Experts in cybersecurity have lately identified a significant increase in the activity of botnets that propagate malware and attack vulnerable network devices. These assaults transmit the ShellBot and Moobot malware...
Researchers uncovers critical vulnerabilities in...
Security researchers from cybersecurity firm Wiz have uncovered a new type of attack that enables hackers to bypass authentication and take over user accounts in various Microsoft applications. The research...
Hackers evolves techniques needed to...
According to a recent campaign by Earth Preta, nation-state hackers aligned with China are becoming increasingly adept at circumventing security solutions. The threat actor has been active since at least...
Tax scammers use Trojan Emotet...
According to Malwarebytes, tax fraudsters are on the rise courtesy of the “Trojan Emotet” to carry out their operations. It is capable of intercepting network traffic and steal data, such...
Tesla, Microsoft Teams, others hacked...
On the second day of Pwn2Own Vancouver 2023, a group of security researchers exploited ten zero-day vulnerabilities in various products, earning $475,000 in total. The Tesla Model 3, Microsoft’s Teams...
New variant of BlackGuard stealer...
The AT&T Alien Labs team discovered a new version of the BlackGuard stealer with additional features such as USB propagation, persistence mechanisms, memory loading of new payloads, and targeting other...
Google removes fake ChatGPT Chrome...
Google has removed a fake Chrome browser extension called “ChatGPT For Google” from its Web Store after it was discovered to be a phishing tool designed to mimic OpenAI’s ChatGPT...
Google uncovers severe security flaws...
Google’s Project Zero has discovered 18 zero-day vulnerabilities in Samsung’s Exynos chips, which attackers could use to completely compromise a phone without the user’s knowledge. The flaws affect a wide...
ReliaQuest detects security incident caused...
ReliaQuest has discovered a security incident caused by the QBot banking trojan in a client’s environment. A threat actor gained access to the network via a phishing email, installed the...