The new backdoor leverages WebSockets to communicate with its command-and-control (C&C) servers, resulting in a more robust and secure means of communication compared to regular HTTP traffic.
The TA505 cybercrime group is upping its financially motivated attacks, shooting malware at a range of industries in a wave of email-based attacks that surged late last month.
The FBI warned the US public that threat actors actively use fake and spoofed unemployment benefit websites to harvest sensitive financial and personal information from unsuspecting victims.
The latest funding round was led by Lightspeed Venture Partners, with participation from Greylock, Aspect Ventures / Acrew Capital, Coatue, Singtel Innov8, and Shlomo Kramer.
Microsoft has patched a security feature bypass vulnerability impacting Surface Pro 3 tablets, enabling threat actors to introduce malicious devices within enterprise environments.
Ransomware attacks are continuing to threaten the U.S. and global healthcare sectors, in part due to many entities’ high dependency on legacy systems and lack of security resources, according to HC3.
The goal of the group, tracked as Harvester by researchers at Symantec who spotted it, is to collect intelligence in highly targeted espionage campaigns focusing on IT, telecom, and government entities.
With 15,080 vulnerabilities (2,957 high, 9,737 medium and 2,386 low) recorded as of October 14, 2021, we’re on track to marking a fifth record year of vulnerabilities discovered in production code.
Experts reported a phishing attempt targeted at Verizon that involves the use of mathematical symbols to bypass anti-phishing systems to acquire users’ Office 365 credentials. The spoofed messages pretend to be a voicemail notification with an embedded Play button. The recent campaign reflects how users can be fooled if they do not pay attention to […]
Kaspersky unearthed a cyberespionage campaign exploiting a zero-day flaw in Windows to deliver MysterySnail malware and steal data. A connection to a Chinese-speaking APT was also established. Experts recommend organizations stay proactive and ready with adequate security measures.