New Mustang Panda campaign targets Asia with a backdoor dubbed DOPLUGSNew Mustang Panda campaign targets Asia with a backdoor dubbed DOPLUGS

New Mustang Panda campaign targets Asia with a backdoor dubbed DOPLUGS

1 year ago

China-linked APT group Mustang Panda targeted various Asian countries with a variant of the PlugX (aka Korplug) backdoor dubbed DOPLUGS.…

US GOV OFFERS A REWARD OF UP TO $15M FOR INFO ON LOCKBIT GANG MEMBERS AND AFFILIATESUS GOV OFFERS A REWARD OF UP TO $15M FOR INFO ON LOCKBIT GANG MEMBERS AND AFFILIATES

US GOV OFFERS A REWARD OF UP TO $15M FOR INFO ON LOCKBIT GANG MEMBERS AND AFFILIATES

1 year ago

U.S. government offers rewards of up to $15 million for information that could lead to the identification or location of…

New Redis miner Migo uses novel system weakening techniquesNew Redis miner Migo uses novel system weakening techniques

New Redis miner Migo uses novel system weakening techniques

1 year ago

A new malware campaign targets Redis servers to deploy the mining crypto miner Migo on compromised Linux hosts. Caro Security…

Critical flaw found in deprecated VMware EAP. Uninstall it immediatelyCritical flaw found in deprecated VMware EAP. Uninstall it immediately

Critical flaw found in deprecated VMware EAP. Uninstall it immediately

1 year ago

VMware urges customers to uninstall the deprecated Enhanced Authentication Plugin (EAP) after the disclosure of a critical flaw CVE-2024-22245. VMware…

Microsoft Exchange flaw CVE-2024-21410 could impact up to 97,000 serversMicrosoft Exchange flaw CVE-2024-21410 could impact up to 97,000 servers

Microsoft Exchange flaw CVE-2024-21410 could impact up to 97,000 servers

1 year ago

Researchers from Shadowserver Foundation identified roughly 28,000 internet-facing Microsoft Exchange servers vulnerable to CVE-2024-21410. The vulnerability CVE-2024-21410 is a bypass…

ConnectWise fixed critical flaws in ScreenConnect remote access toolConnectWise fixed critical flaws in ScreenConnect remote access tool

ConnectWise fixed critical flaws in ScreenConnect remote access tool

1 year ago

ConnectWise addressed two critical vulnerabilities in its ScreenConnect remote desktop access product and urges customers to install the patches asap.…

More details about Operation Cronos that disrupted Lockbit operationMore details about Operation Cronos that disrupted Lockbit operation

More details about Operation Cronos that disrupted Lockbit operation

1 year ago

Law enforcement provided additional details about the international Operation Cronos that led to the disruption of the Lockbit ransomware operation.…

Cactus ransomware gang claims the theft of 1.5TB of data from Energy management and industrial automation firm Schneider ElectricCactus ransomware gang claims the theft of 1.5TB of data from Energy management and industrial automation firm Schneider Electric

Cactus ransomware gang claims the theft of 1.5TB of data from Energy management and industrial automation firm Schneider Electric

1 year ago

The Cactus ransomware gang claims the theft of 1.5TB of data from the Energy management and industrial automation firm Schneider…

Operation Cronos: law enforcement disrupted the LockBit operationOperation Cronos: law enforcement disrupted the LockBit operation

Operation Cronos: law enforcement disrupted the LockBit operation

1 year ago

An international law enforcement operation codenamed 'Operation Cronos' led to the disruption of the LockBit ransomware operation. A joint law…

Anatsa Android banking Trojan expands to Slovakia, Slovenia, and CzechiaAnatsa Android banking Trojan expands to Slovakia, Slovenia, and Czechia

Anatsa Android banking Trojan expands to Slovakia, Slovenia, and Czechia

1 year ago

The Android banking trojan Anatsa resurged expanding its operation to new countries, including Slovakia, Slovenia, and Czechia. In November 2023, researchers…