Category: Securityaffairs

25
Aug
2023

China-linked Flax Typhoon APT targets TaiwanSecurity Affairs

China-linked APT group Flax Typhoon targeted dozens of organizations in Taiwan as part of a suspected espionage campaign. Microsoft linked…

25
Aug
2023

Whiffy Recon malware triangulates the position of infected systems via Wi-FiSecurity Affairs

Experts observed the SmokeLoader malware delivering a new Wi-Fi scanning malware strain dubbed Whiffy Recon. Secureworks Counter Threat Unit (CTU) researchers…

25
Aug
2023

Patches for Barracuda ESG CVE-2023-2868 are ineffectiveSecurity Affairs

The FBI warned that patches for a critical Barracuda ESG flaw CVE-2023-2868 are “ineffective” and patched appliances are still being…

24
Aug
2023

Experts released PoC exploit for Ivanti Sentry CVE-2023-38035Security Affairs

Proof-of-concept exploit code for critical Ivanti Sentry authentication bypass flaw CVE-2023-38035 has been released. Researchers released a proof-of-concept (PoC) exploit…

24
Aug
2023

Lazarus APT exploits Zoho ManageEngine flaw to target an Internet backbone infrastructure providerSecurity Affairs

The North Korea-linked Lazarus group exploits a critical flaw in Zoho ManageEngine ServiceDesk Plus to deliver the QuiteRAT malware. The…

24
Aug
2023

Lapsus$ member has been convicted of having hacked multiple high-profile companiesSecurity Affairs

An 18-year-old member of the Lapsus$ gang has been convicted of having helped hack multiple high-profile companies. A teenage member of…

24
Aug
2023

+3,000 Openfire servers exposed to attacks using a new exploitSecurity Affairs

Researchers warn that more than 3,000 unpatched Openfire servers are exposed to attacks using an exploit for a recent flaw….

23
Aug
2023

DoJ charged Tornado Cash founders with laundering more than $1 billionSecurity Affairs

The U.S. DoJ charged two men with operating the Tornado Cash service and laundering more than $1 Billion in criminal…

23
Aug
2023

FBI identifies wallets holding cryptocurrency funds stolen by North KoreaSecurity Affairs

The U.S. FBI warned that North Korea-linked threat actors may attempt to cash out stolen cryptocurrency worth more than $40…

23
Aug
2023

Carderbee APT targets Hong Kong orgs via supply chain attacksSecurity Affairs

A previously unknown APT group, tracked as Carderbee, was behind a supply chain attack against Hong Kong organizations. Symantec Threat…

23
Aug
2023

TP-Link Tapo L530E smart bulb flaws allow hackers to steal user passwordsSecurity Affairs

Four vulnerabilities in the TP-Link Tapo L530E smart bulb and impacting the mobile app used to control them expose users…

22
Aug
2023

Akira ransomware gang spotted targeting Cisco VPN products to hack organizationsSecurity Affairs

The Akira ransomware gang targets Cisco VPN products to gain initial access to corporate networks and steal their data. The…