Skip to main content

Security News

Filter by:

Lenovo Driver Goof Poses Security Risk For Users Of 25 Models

Packet Storm 10 Nov 2022 4947 Views

New StrelaStealer malware steals your Outlook, Thunderbird accounts

A new information-stealing malware named 'StrelaStealer' is actively stealing email account credentials from Outlook and Thunderbird, two widely used email clients. [...]
Bleepingcomputer 10 Nov 2022 1018 Views

Several Cyber Attacks Observed Leveraging IPFS Decentralized Network

A number of phishing campaigns are leveraging the decentralized Interplanetary Filesystem (IPFS) network to host malware, phishing kit infrastructure, and facilitate other attacks. [...]
Thehackernews 10 Nov 2022 902 Views

Citrix urges admins to patch critical ADC, Gateway auth bypass

Citrix is urging customers to install security updates for a critical authentication bypass vulnerability in Citrix ADC and Citrix Gateway. [...]
Bleepingcomputer 9 Nov 2022 1025 Views

LockBit affiliate uses Amadey Bot malware to deploy ransomware

A LockBit 3. ransomware affiliate is using phishing emails that install the Amadey Bot to take control of a device and encrypt devices. [...]
Bleepingcomputer 9 Nov 2022 1025 Views

Malicious extension lets attackers control Google Chrome remotely

A new Chrome browser botnet named 'Cloud9' has been discovered in the wild using malicious extensions to steal online accounts, log keystrokes, inject ads and malicious JS code, and enlist the victim's browser in DDoS attacks. [...]
Bleepingcomputer 9 Nov 2022 981 Views

VMware fixes three critical auth bypass bugs in remote access tool

VMware has released security updates to address three critical severity vulnerabilities in the Workspace ONE Assist solution that enable remote attackers to bypass authentication and elevate privileges to admin. [...]
Bleepingcomputer 9 Nov 2022 919 Views

Azov Ransomware is a wiper, destroying data 666 bytes at a time

The Azov Ransomware continues to be heavily distributed worldwide, now proven to be a data wiper that intentionally destroys victims' data and infects other programs.
Bleeping Computer 8 Nov 2022 1007 Views

Experts Find URLScan Security Scanner Inadvertently Leaks Sensitive URLs and Data

Security researchers are warning of "a trove of sensitive information" leaking through urlscan.io, a website scanner for suspicious and malicious URLs.
The Hacker News 8 Nov 2022 962 Views

Researchers Uncover 29 Malicious PyPI Packages Targeted Developers with W4SP Stealer

Cybersecurity researchers have uncovered 29 packages in Python Package Index (PyPI), the official third-party software repository for the Python programming language, that aim to infect developers' machines with a malware called W4SP Stealer. [...]
Thehackernews 7 Nov 2022 949 Views