Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2024-12-18 12:15:00 |
Attacker Distributes DarkGate Using MS Teams Vishing Technique (lien direct) |
Trend Micro highlighted a case where an attacker posed as a client on an MS Teams call to distribute DarkGate malware
Trend Micro highlighted a case where an attacker posed as a client on an MS Teams call to distribute DarkGate malware |
Malware
Prediction
|
|
★★★
|
 |
2024-12-17 17:15:00 |
Sophisticated TA397 Malware Targets Turkish Defense Sector (lien direct) |
Sophisticated phishing attack targeting Turkey\'s defense sector revealed TA397\'s advanced tactics
Sophisticated phishing attack targeting Turkey\'s defense sector revealed TA397\'s advanced tactics |
Malware
|
|
★★
|
 |
2024-12-13 11:15:00 |
Researchers Discover Malware Used by Nation-Sates to Attack Industrial Systems (lien direct) |
IOCONTROL, a custom-built IoT/OT malware, was used by Iran-affiliated groups to attack Israel- and US-based OT/IoT devices, according to Claroty
IOCONTROL, a custom-built IoT/OT malware, was used by Iran-affiliated groups to attack Israel- and US-based OT/IoT devices, according to Claroty |
Malware
Industrial
|
|
★★
|
 |
2024-12-12 16:30:00 |
Remcos RAT Malware Evolves with New Techniques (lien direct) |
Cyber-attacks involving Remcos RAT surged in Q3 2024, enabling attackers to control victim machines remotely, steal data and carry out espionage
Cyber-attacks involving Remcos RAT surged in Q3 2024, enabling attackers to control victim machines remotely, steal data and carry out espionage |
Malware
|
|
★★★
|
 |
2024-12-11 17:00:00 |
Secret Blizzard Targets Ukrainian Military with Custom Malware (lien direct) |
Microsoft detailed how Russian espionage group Secret Blizzard is leveraging infrastructure of other threat actors to target the Ukrainian military with custom malware
Microsoft detailed how Russian espionage group Secret Blizzard is leveraging infrastructure of other threat actors to target the Ukrainian military with custom malware |
Malware
Threat
|
|
★★★
|
 |
2024-12-11 11:15:00 |
US Sanctions Chinese Firm at Center of Global Firewall Hack (lien direct) |
The US government has sanctioned Sichuan Silence and one of its employees for the mass compromise of firewalls which led to the deployment of malware and ransomware
The US government has sanctioned Sichuan Silence and one of its employees for the mass compromise of firewalls which led to the deployment of malware and ransomware |
Ransomware
Malware
Hack
|
|
★★★
|
 |
2024-12-10 14:00:00 |
New AppLite Malware Targets Banking Apps in Phishing Campaign (lien direct) |
New AppLite Banker malware targets Android devices, employing advanced phishing techniques to steal credentials and data
New AppLite Banker malware targets Android devices, employing advanced phishing techniques to steal credentials and data |
Malware
Mobile
|
|
★★
|
 |
2024-12-02 14:00:00 |
SmokeLoader Malware Campaign Targets Companies in Taiwan (lien direct) |
SmokeLoader malware identified targeting Taiwanese firms via phishing, exploiting Microsoft Office vulnerabilities
SmokeLoader malware identified targeting Taiwanese firms via phishing, exploiting Microsoft Office vulnerabilities |
Malware
Vulnerability
|
|
★★
|
 |
2024-11-28 16:30:00 |
GodLoader Malware Infects Thousands via Game Development Tools (lien direct) |
A new cyber-attack technique uses Godot Engine to deploy undetectable malware via GodLoader, infecting more than 17,000 devices
A new cyber-attack technique uses Godot Engine to deploy undetectable malware via GodLoader, infecting more than 17,000 devices |
Malware
Tool
|
|
★★
|
 |
2024-11-27 17:15:00 |
Attack Group APT-C-60 Targets Japan Using Trusted Platforms (lien direct) |
APT-C-60 targets Japan with phishing emails, using job application ruse and malware via Google Drive
APT-C-60 targets Japan with phishing emails, using job application ruse and malware via Google Drive |
Malware
|
|
★★★
|
 |
2024-11-25 17:15:00 |
IoT Device Traffic Up 18% as Malware Attacks Surge 400% (lien direct) |
Zscaler\'s latest report finds 54.5% of IoT attacks target manufacturing, with the industry suffering more than three times the weekly attacks of other sectors
Zscaler\'s latest report finds 54.5% of IoT attacks target manufacturing, with the industry suffering more than three times the weekly attacks of other sectors |
Malware
|
|
★★★
|
 |
2024-11-22 13:00:00 |
Russian Cyber Spies Target Organizations with HatVibe and CherrySpy Malware (lien direct) |
Russian-aligned TAG-110 uses custom tools to spy on governments, human rights groups and educational institutions in Europe and Asia
Russian-aligned TAG-110 uses custom tools to spy on governments, human rights groups and educational institutions in Europe and Asia |
Malware
Tool
|
|
★★
|
 |
2024-11-21 17:15:00 |
Linux Malware WolfsBane and FireWood Linked to Gelsemium APT (lien direct) |
New Linux malware WolfsBane and FireWood have been linked to Gelsemium APT, a cyber-espionage group targeting critical systems
New Linux malware WolfsBane and FireWood have been linked to Gelsemium APT, a cyber-espionage group targeting critical systems |
Malware
|
|
★★★
|
 |
2024-11-21 16:30:00 |
Vietnam\\'s Infostealer Crackdown Reveals VietCredCare and DuckTail (lien direct) |
Group-IB revealed key differences in VietCredCare and DuckTail infostealer malware targeting Facebook Business accounts
Group-IB revealed key differences in VietCredCare and DuckTail infostealer malware targeting Facebook Business accounts |
Malware
|
|
★★
|
 |
2024-11-21 11:30:00 |
Lumma Stealer Proliferation Fueled by Telegram Activity (lien direct) |
Spreading malware via Telegram channels allows threat actors to bypass traditional detection mechanisms and reach a broad, unsuspecting audience
Spreading malware via Telegram channels allows threat actors to bypass traditional detection mechanisms and reach a broad, unsuspecting audience |
Malware
Threat
|
|
★★★
|
 |
2024-11-18 16:30:00 |
Swiss Cyber Agency Warns of QR Code Malware in Mail Scam (lien direct) |
Switzerland\'s National Cyber Security Centre has warned of a new QR code scam in fake MeteoSwiss letters spreading Android malware
Switzerland\'s National Cyber Security Centre has warned of a new QR code scam in fake MeteoSwiss letters spreading Android malware |
Malware
Mobile
|
|
★★
|
 |
2024-11-18 15:30:00 |
\\'ClickFix\\' Cyber-Attacks for Malware Deployment on the Rise (lien direct) |
Proofpoint researchers have observed the growing use of the ClickFix social engineering tactic, which lures people into running malicious content on their computer
Proofpoint researchers have observed the growing use of the ClickFix social engineering tactic, which lures people into running malicious content on their computer |
Malware
|
|
★★
|
 |
2024-11-18 11:30:00 |
North Korean IT Worker Network Tied to BeaverTail Phishing Campaign (lien direct) |
BeaverTail malware has been used to target tech job seekers through fake recruiters, Palo Alto Networks\' Unit 42 has found
BeaverTail malware has been used to target tech job seekers through fake recruiters, Palo Alto Networks\' Unit 42 has found |
Malware
|
|
★★
|
 |
2024-11-13 18:00:00 |
Hive0145 Targets Europe with Advanced Strela Stealer Campaigns (lien direct) |
Hive0145 is targeting Spain, Germany, Ukraine with Strela Stealer malware in invoice phishing tactic
Hive0145 is targeting Spain, Germany, Ukraine with Strela Stealer malware in invoice phishing tactic |
Malware
|
|
★★
|
 |
2024-11-13 16:00:00 |
Lazarus Group Uses Extended Attributes for Code Smuggling in macOS (lien direct) |
Lazarus APT has been found smuggling malware onto macOS devices using custom extended attributes, evading detection
Lazarus APT has been found smuggling malware onto macOS devices using custom extended attributes, evading detection |
Malware
|
APT 38
|
★★
|
 |
2024-11-12 16:30:00 |
TA455\\'s Iranian Dream Job Campaign Targets Aerospace with Malware (lien direct) |
The TA455 phishing campaign used fake job offers on LinkedIn to deploy malware
The TA455 phishing campaign used fake job offers on LinkedIn to deploy malware |
Malware
|
|
★★★
|
 |
2024-11-12 13:00:00 |
North Korea Hackers Leverage Flutter to Deliver macOS Malware (lien direct) |
Jamf observed North Korean attackers embedding malware within Flutter applications to target macOS devices, potentially to test a new way of weaponizing malware
Jamf observed North Korean attackers embedding malware within Flutter applications to target macOS devices, potentially to test a new way of weaponizing malware |
Malware
|
|
★★
|
 |
2024-11-08 10:45:00 |
L'acteur nord-coréen déploie une nouvelle campagne de logiciels malveillants contre les entreprises cryptographiques North Korean Actor Deploys Novel Malware Campaign Against Crypto Firms (lien direct) |
Sentinellabs a observé le groupe nord-coréen Bluenoroff ciblant les entreprises cryptographiques via une campagne de logiciels malveillants en plusieurs étapes qui utilise un nouveau mécanisme de persistance
SentinelLabs observed the North Korean group BlueNoroff targeting crypto firms via a multi-stage malware campaign which utilizes a novel persistence mechanism |
Malware
|
|
★★
|
 |
2024-11-06 14:15:00 |
WinOS4.0 MALWWare trouvés dans les applications de jeu, cible les utilisateurs de Windows Winos4.0 Malware Found in Game Apps, Targets Windows Users (lien direct) |
WinOS4.0 Malware, dérivé de GH0Strat, cible les utilisateurs de Windows via des applications liées au jeu, permettant à la télécommande des systèmes affectés
Winos4.0 malware, derived from Gh0strat, targets Windows users via game-related applications, enabling remote control of affected systems |
Malware
|
|
★★
|
 |
2024-11-05 16:30:00 |
ToxicPanda Malware cible les applications bancaires sur les appareils Android ToxicPanda Malware Targets Banking Apps on Android Devices (lien direct) |
ToxicPanda Malware cible les applications bancaires sur Android, se propageant à l'Italie, au Portugal et en Espagne
ToxicPanda malware targets banking apps on Android, spreading through Italy, Portugal and Spain |
Malware
Mobile
|
|
★★★
|
 |
2024-10-31 12:00:00 |
Le secteur gouvernemental souffre de 236% des attaques de logiciels malveillants Government Sector Suffers 236% Surge in Malware Attacks (lien direct) |
Les attaques liées aux logiciels malveillants contre les organisations gouvernementales mondiales ont augmenté de 236% en glissement annuel au premier trimestre 2024, selon Sonicwall
Malware-related attacks against global government organizations increased 236% year-on-year in Q1 2024, according to SonicWall |
Malware
|
|
★★
|
 |
2024-10-30 16:30:00 |
MISE À JOUR FAKECALL Cibler les appareils mobiles avec Vishing Updated FakeCall Malware Targets Mobile Devices with Vishing (lien direct) |
La nouvelle variante FAKECALL utilise des tactiques Vishing avancées, avec Bluetooth pour la surveillance des appareils
The new FakeCall variant uses advanced vishing tactics, featuring Bluetooth for device monitoring |
Malware
Mobile
|
|
★★
|
 |
2024-10-28 15:45:00 |
La campagne russe de logiciels malveillants cible les recrues ukrainiennes via Telegram Russian Malware Campaign Targets Ukrainian Recruits Via Telegram (lien direct) |
Les chercheurs de Google ont observé l'acteur de menace russe UNC5812 à l'aide d'une campagne de logiciels malveillants via Telegram pour accéder aux appareils des recrues militaires ukrainiennes
Google researchers have observed Russian threat actor UNC5812 using a malware campaign via Telegram to access the devices of Ukrainian military recruits |
Malware
Threat
|
|
★★★
|
 |
2024-10-25 11:00:00 |
L'Ukraine met en garde contre la campagne de phishing de masse ciblant les données des citoyens Ukraine Warns of Mass Phishing Campaign Targeting Citizens Data (lien direct) |
CERT-UA a déclaré que la campagne de phishing attire des victimes de téléchargement de logiciels malveillants utilisés pour exfiltrer des fichiers contenant des données personnelles sensibles
CERT-UA said the phishing campaign lures victims into downloading malware used to exfiltrate files containing sensitive personal data |
Malware
|
|
★★★
|
 |
2024-10-24 16:00:00 |
Le groupe Lazarus exploite Google Chrome Flaw dans une nouvelle campagne Lazarus Group Exploits Google Chrome Flaw in New Campaign (lien direct) |
Le groupe Lazarus a exploité Google Chrome Zero-Day, infecté les systèmes avec des logiciels malveillants Manuscrypt
Lazarus Group exploited Google Chrome zero-day, infecting systems with Manuscrypt malware |
Malware
Vulnerability
Threat
|
APT 38
|
★★
|
 |
2024-10-23 16:00:00 |
New MALware Warmcookie cible les utilisateurs avec des liens malveillants New Malware WarmCookie Targets Users with Malicious Links (lien direct) |
Warmcookie Malware, alias badspace, se propage via callpam, malvertising et permet un accès persistant
WarmCookie malware, aka BadSpace, spreads via malspam, malvertising and enables persistent access |
Malware
|
|
★★
|
 |
2024-10-21 14:00:00 |
NetSkope rapporte une résurgence du chargeur Bumblebee possible Netskope Reports Possible Bumblebee Loader Resurgence (lien direct) |
Le chargeur de logiciels malveillants enlevé par Europol en mai 2024 pourrait être de retour avec une vengeance
The malware loader taken down by Europol in May 2024 could be back with a vengeance |
Malware
|
|
★★
|
 |
2024-10-18 13:00:00 |
La vulnérabilité macOS pourrait exposer les données des utilisateurs, avertit Microsoft macOS Vulnerability Could Expose User Data, Microsoft Warns (lien direct) |
Microsoft exhorte les utilisateurs de MacOS à appliquer un correctif pour la vulnérabilité, qui, selon elle, peut être sous exploitation active par la famille Adload Maleware
Microsoft urges macOS users to apply a fix for the vulnerability, which it believes may be under active exploitation by the Adload malware family |
Malware
Vulnerability
|
|
★★
|
 |
2024-10-17 09:30:00 |
Les deux tiers des logiciels malveillants attribuables liés aux États-nations Two-thirds of Attributable Malware Linked to Nation States (lien direct) |
Nettskope affirme que 66% des attaques de logiciels malveillants l'année dernière ont été soutenues par les États-nations
Netskope claims 66% of malware attacks last year were backed by nation states |
Malware
|
|
★★★
|
 |
2024-10-16 14:10:00 |
Les amateurs de café ont mis en garde contre l'escroquerie de phishing Starbucks Coffee Lovers Warned of New Starbucks Phishing Scam (lien direct) |
Les e-mails de phishing prétendant provenir de Starbucks offrent aux destinataires une "boîte gratuite pour les amateurs de café" dans le but de voler des logiciels malveillants personnels ou d'installer des logiciels sur les appareils
Phishing emails claiming to be from Starbucks are offering recipients a "free Coffee Lovers Box" in an attempt to steal personal or install malware on devices |
Malware
|
|
★★
|
 |
2024-10-11 10:00:00 |
Sonatype rapporte une augmentation de 156% des forfaits malveillants OSS Sonatype Reports 156% Increase in OSS Malicious Packages (lien direct) |
Un nouveau rapport sur son sonatype révèle une augmentation de 156% des logiciels malveillants open source, avec plus de 704 102 forfaits malveillants identifiés depuis 2019, car l'adoption d'OSS continue de monter en flèche
A new Sonatype report reveals a 156% surge in open source malware, with over 704,102 malicious packages identified since 2019, as OSS adoption continues to skyrocket |
Malware
|
|
★
|
 |
2024-10-09 15:30:00 |
New Beavertail Malware cible les demandeurs d'emploi via de faux recruteurs New BeaverTail Malware Targets Job Seekers via Fake Recruiters (lien direct) |
New Beavertail malware cible les demandeurs d'emploi technologiques via de faux recruteurs sur LinkedIn et x
New BeaverTail malware targets tech job seekers via fake recruiters on LinkedIn and X |
Malware
|
|
★★
|
 |
2024-10-08 10:30:00 |
La cyber-fraude coûte jusqu'à 37 milliards de dollars en Asie du Sud-Est l'année dernière Cyber Fraud Cost up to $37bn in Southeast Asia Last Year (lien direct) |
Un rapport des Nations Unies a révélé que les groupes de criminalité organisés dans la région ont rapidement intégré les logiciels malveillants, l'IA générative et les fesses profondes pour améliorer leurs activités de fraude
A UN report found that organized crime groups in the region have rapidly integrated malware, generative AI and deepfakes to enhance their fraud activities |
Malware
|
|
★★★
|
 |
2024-10-03 08:30:00 |
Fin7 Gang cache des logiciels malveillants dans des sites «Deepnude» FIN7 Gang Hides Malware in AI “Deepnude” Sites (lien direct) |
Le groupe de menace fin7 cache des logiciels malveillants infosiner
Threat group FIN7 is hiding infostealer malware on sites promising AI deepnude downloads |
Malware
Threat
|
|
★★
|
 |
2024-10-02 15:30:00 |
Le groupe Stonefly cible les entreprises américaines avec de nouveaux outils de logiciels malveillants Stonefly Group Targets US Firms With New Malware Tools (lien direct) |
North Korean Apt Stonefly continue de lancer des cyberattaques dans les entreprises américaines malgré l'acte d'accusation de juillet
North Korean APT Stonefly continues to launch cyber-attacks on US firms despite July indictment |
Malware
Tool
|
|
★★
|
 |
2024-09-26 13:00:00 |
First Mobile Crypto Raindeur trouvé sur Google Play First Mobile Crypto Drainer Found on Google Play (lien direct) |
Les chercheurs découvrent que les logiciels malveillants de draineur de crypto mobile cachés dans l'application WalletConnect en remportant 10 000 téléchargements
Researchers discover mobile crypto drainer malware hidden in WalletConnect app garnering 10,000 downloads |
Malware
Mobile
|
|
★★
|
 |
2024-09-26 08:30:00 |
Les publicités malveillantes cachent l'infostealer dans League of Legends \\ 'Download \\' Malicious Ads Hide Infostealer in League of Legends \\'Download\\' (lien direct) |
Bitdefender est Warning League of Legends Fans à ne pas tomber dans une campagne de phishing conçue pour diffuser le malware de Lumma Stealer
Bitdefender is warning League of Legends fans not to fall for a phishing campaign designed to spread Lumma Stealer malware |
Malware
|
|
★★
|
 |
2024-09-24 15:30:00 |
Nouvelle variante de logiciels malveillants octo2 menace la sécurité des banques mobiles New Octo2 Malware Variant Threatens Mobile Banking Security (lien direct) |
Les cybercriminels ont été observés pour déguiser Octo2 comme des applications légitimes comme Google Chrome et NordVPN
Cybercriminals have been observed disguising Octo2 as legitimate apps like Google Chrome and NordVPN |
Malware
Mobile
|
|
★★
|
 |
2024-09-24 12:45:00 |
14 millions de patients touchés par les violations des données sur les soins de santé américaines en 2024 14 Million Patients Impacted by US Healthcare Data Breaches in 2024 (lien direct) |
Sonicwall a constaté que les violations de données causées par les attaques de logiciels malveillantes contre les organisations de santé américaines ont affecté 14 millions de personnes jusqu'à présent en 2024
SonicWall found that data breaches caused by malware attacks on US healthcare organizations have affected 14 million people so far in 2024 |
Malware
Medical
|
|
★★
|
 |
2024-09-19 16:15:00 |
Les infostateurs provoquent une augmentation des attaques de ransomware, une seule fois sur trois pour récupérer les données Infostealers Cause Surge in Ransomware Attacks, Just One in Three Recover Data (lien direct) |
Les logiciels malveillants et l'infostaler et l'exposition à l'identité numérique derrière la hausse des ransomwares, les chercheurs trouvent
Infostealer malware and digital identity exposure behind rise in ransomware, researchers find |
Ransomware
Malware
|
|
★★★
|
 |
2024-09-12 13:00:00 |
Le groupe Lazarus cible les développeurs de la campagne de VMConnect fraîche Lazarus Group Targets Developers in Fresh VMConnect Campaign (lien direct) |
Le groupe Lazarus a été observé en usurpation d'identité du personnel de Capital One pour attirer les développeurs dans le téléchargement des logiciels malveillants sur des référentiels open source
Lazarus Group has been observed impersonating Capital One staff to lure developers into downloading malware on open source repositories |
Malware
|
APT 38
|
★★
|
 |
2024-09-05 09:15:00 |
Hackers uniquement Fans ciblés avec des logiciels malveillants d'infostealer OnlyFans Hackers Targeted With Infostealer Malware (lien direct) |
Les pirates intéressés à cibler uniquement les utilisateurs de Fans ont eux-mêmes été distingués par une campagne d'infostoritration
Hackers interested in targeting OnlyFans users have themselves been singled out by an infostealing campaign |
Malware
|
|
★★
|
 |
2024-09-04 13:00:00 |
Outil d'équipe rouge maltraité pour le déploiement de logiciels malveillants Red Teaming Tool Abused for Malware Deployment (lien direct) |
Cisco Talos a évalué que l'outil d'équipe rouge Macropack est maltraité par divers acteurs de menace dans différentes géographies pour déployer des logiciels malveillants
Cisco Talos has assessed that red teaming tool MacroPack is being abused by various threat actors in different geographies to deploy malware |
Malware
Tool
Threat
|
|
★★★
|
 |
2024-09-03 13:30:00 |
VPN GlobalProtect de Palo Alto \\ a usurpré pour livrer une nouvelle variante de logiciels malveillants Palo Alto\\'s GlobalProtect VPN Spoofed to Deliver New Malware Variant (lien direct) |
Une variante du malware Wikiloader a été observée par l'empoisonnement du référence
A variant of the WikiLoader malware was observed being delivered via SEO poisoning and spoofing Palo Alto Networks\' GlobalProtect VPN software |
Malware
|
|
★★★
|
 |
2024-09-02 08:30:00 |
Des dizaines d'organisations frappées par un nouveau malware de Voldemort Scores of Organizations Hit By Novel Voldemort Malware (lien direct) |
ProofPoint a découvert une nouvelle campagne de cyber-espionnage déploiement de nouveaux logiciels malveillants surnommés «Voldemort»
Proofpoint has uncovered a new cyber-espionage campaign deploying new malware dubbed “Voldemort” |
Malware
|
|
★★
|