Src |
Date (GMT) |
Titre |
Description |
Tags |
Stories |
Notes |
 |
2021-04-07 15:10:01 |
Fake Netflix App Luring Android Users to Malware (lien direct) |
Researchers Flag 'FlixOnline' as a Malicious Android Play Store App That Combines Social Engineering With WhatsApp Auto-Replies to Propagate
|
Malware
|
|
|
 |
2021-03-29 18:30:38 |
Vulnerability in \'netmask\' npm Package Affects 280,000 Projects (lien direct) |
A vulnerability in the netmask npm package could expose private networks and lead to a variety of attacks, including malware delivery.
|
Malware
Vulnerability
Guideline
|
|
|
 |
2021-03-29 14:03:11 |
\'Hades\' Ransomware Hits Big Firms, but Operators Slow to Respond to Victims (lien direct) |
Researchers from CrowdStrike, Accenture, and Awake Security have dissected some of the attacks involving the Hades ransomware and published information on both the malware itself and the tactics, techniques and procedures (TTPs) employed by its operators.
|
Ransomware
Malware
|
|
|
 |
2021-03-24 18:56:34 |
Facebook Disrupts Chinese Spies Using iPhone, Android Malware (lien direct) |
Facebook's threat intelligence team says it has disrupted a sophisticated Chinese spying team that routinely use iPhone and Android malware to hit journalists, dissidents and activists around the world.
|
Malware
Threat
|
|
|
 |
2021-03-24 12:09:29 |
Honeywell Says Malware Disrupted IT Systems (lien direct) |
Industrial giant Honeywell on Tuesday revealed that some of its IT systems were disrupted as a result of a malware attack.
The company said the intrusion was detected “recently” and only a “limited number” of IT systems were disrupted. No other information has been provided regarding impact.
|
Malware
|
|
|
 |
2021-03-23 20:37:49 |
Purple Fox Malware Squirms Like a Worm on Windows (lien direct) |
Malware hunters at Guardicore are warning that an aggressive botnet operator has turned to SMB password brute-forcing to infect and spread like a worm across the Microsoft Windows ecosystem.
|
Malware
|
|
★★★★
|
 |
2021-03-22 14:00:25 |
Researchers Raise Alarm for F5 BIG-IP Malware Attacks (lien direct) |
The urgency to patch gaping security holes in F5 Networks BIG-IP and BIG-IQ products escalated over the weekend after researchers spotted malicious in-the-wild attack activity.
|
Malware
|
|
|
 |
2021-03-18 16:06:03 |
New XcodeSpy Mac Malware Targets Software Developers (lien direct) |
A recently discovered Mac malware has been used by unknown threat actors to target software developers who use Apple's Xcode integrated development environment.
|
Malware
Threat
|
|
|
 |
2021-03-18 14:24:15 |
Five Months After Takedown Attempt, CISA and FBI Warn of Ongoing TrickBot Attacks (lien direct) |
Attacks employing the TrickBot malware continue, leveraging phishing emails as the initial infection vector, the Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) warn.
|
Malware
|
|
★★★★
|
 |
2021-03-12 15:55:21 |
Mac Malware \'XCSSET\' Adapted for Devices With M1 Chips (lien direct) |
An increasing number of Mac malware developers have started creating variants that are specifically designed to run on devices powered by Apple's M1 chip.
|
Malware
|
|
|
 |
2021-03-05 15:15:49 |
Ransomware Takedowns Underscore Need for Private-Public Cybersecurity Collaboration (lien direct) |
The recent disruption of Emotet, conducted by a worldwide coalition of law enforcement agencies, has huge significance. There are the obvious cybersecurity implications of disrupting what's been called the “most dangerous malware in the world,” but it's also a strong reminder of the importance of public and private collaboration in fighting cybercrime.
|
Malware
|
|
|
 |
2021-03-05 11:39:50 |
Three New Malware Strains Linked to SolarWinds Hackers (lien direct) |
Microsoft and cybersecurity firm FireEye on Thursday published blog posts detailing several new pieces of malware that they believe are linked to the hackers behind the supply chain attack targeting Texas-based IT management solutions provider SolarWinds.
|
Malware
|
|
|
 |
2021-03-04 15:59:17 |
Managed Services Provider CompuCom Hit by Malware (lien direct) |
Managed services provider CompuCom was recently targeted in a cyberattack that led to some disruption to customer services and internal operations.
|
Malware
|
|
|
 |
2021-03-03 12:22:14 |
Should You Be Concerned About the Recently Leaked Spectre Exploits? (lien direct) |
A researcher revealed on Monday that some exploits for the notorious CPU vulnerability known as Spectre were uploaded recently to the VirusTotal malware analysis service. While some experts say this could increase the risk of exploitation for malicious purposes, others believe there is no reason for concern.
|
Malware
Vulnerability
|
|
|
 |
2021-02-22 12:16:19 |
Mysterious Mac Malware Infected at Least 30,000 Devices Worldwide (lien direct) |
Researchers at managed detection and response firm Red Canary have come across a mysterious piece of Mac malware that appears to have infected at least 30,000 devices around the world.
|
Malware
|
|
★★
|
 |
2021-02-18 15:10:50 |
France to Boost Cyberdefense After Hospital Malware Attacks (lien direct) |
French President Emmanuel Macron on Thursday unveiled a plan to better arm public facilities and private companies against cybercriminals following ransomware attacks at two hospitals this month and an upsurge of similar cyber assaults in France.
|
Ransomware
Malware
|
|
|
 |
2021-02-18 11:39:19 |
Mac Malware Targeting Apple\'s M1 Chip Emerges (lien direct) |
A researcher has spotted the first piece of Mac malware that appears to have been created specifically for devices with Apple's recently introduced M1 chip.
|
Malware
|
|
|
 |
2021-02-13 19:18:22 |
Computer Malware Fraudster Gets 2 Years in Prison (lien direct) |
A man who played a key role in a computer malware scam has been sentenced to two years in prison, federal prosecutors say.
|
Malware
|
|
|
 |
2021-02-13 11:24:15 |
Vast Majority of Phishing and Malware Campaigns Are Small-Scale and Short-Lived (lien direct) |
Researchers from Google and Stanford University have analyzed the patterns of more than 1.2 billion email-based phishing and malware attacks targeting Gmail users, and found that most attack campaigns are short-lived and sent to fewer than 1,000 targets.
|
Malware
|
|
|
 |
2021-02-09 15:12:30 |
Old Iranian Spying Operation Resumes After Long Break (lien direct) |
Following a two-year downtime, an Iran-linked cyberespionage operation has recommenced with new second-stage malware and with an updated variant of the Infy malware, according to joint research conducted by cybersecurity firms SafeBreach and Check Point.
|
Malware
|
|
|
 |
2021-02-04 16:07:37 |
New \'Hildegard\' Malware Targets Kubernetes Systems (lien direct) |
The hacking group referred to as TeamTNT has been employing a new piece of malware in a recently started campaign targeting Kubernetes environments, security researchers with Palo Alto Networks' Unit 42 reveal.
|
Malware
|
Uber
|
|
 |
2021-02-03 11:52:48 |
The Drovorub Mystery: Malware NSA Warned About Can\'t Be Found (lien direct) |
NSA and FBI Released Detailed Information on Drovorub Linux Malware, But Major Cybersecurity Firms Found No Samples
|
Malware
|
|
|
 |
2021-02-02 13:53:50 |
Sophisticated Multiplatform Malware \'Kobalos\' Targets Supercomputers (lien direct) |
Cybersecurity firm ESET on Tuesday published a report detailing what it described as a previously undocumented piece of malware that had been observed targeting high-performance computing (HPC) clusters.
|
Malware
|
|
|
 |
2021-02-02 04:56:53 |
Cyberspies Delivered Malware to Gamers via Supply Chain Attack (lien direct) |
Researchers at cybersecurity firm ESET say they have uncovered an espionage campaign that has targeted online gamers in Asia through a compromised software company.
|
Malware
|
|
|
 |
2021-01-27 13:06:01 |
Hundreds of Industrial Organizations Received Sunburst Malware in SolarWinds Attack (lien direct) |
Hundreds of industrial organizations have apparently received a piece of malware named Sunburst as part of the supply chain attack that hit IT management and monitoring firm SolarWinds last year, Kaspersky's ICS CERT unit reported on Tuesday.
|
Malware
|
Solardwinds
Solardwinds
|
|
 |
2021-01-22 13:28:38 |
QNAP Warns NAS Users of \'dovecat\' Malware Attacks (lien direct) |
QNAP this week warned users of attacks targeting QNAP NAS (network-attached storage) devices with a piece of malware named “dovecat.”
|
Malware
|
|
|
 |
2021-01-21 15:25:39 |
Microsoft Details OPSEC, Anti-Forensic Techniques Used by SolarWinds Hackers (lien direct) |
Microsoft on Wednesday released another report detailing the activities and the methods of the threat actor behind the attack on IT management solutions firm SolarWinds, including their malware delivery methods, anti-forensic behavior, and operational security (OPSEC).
|
Malware
Threat
|
|
|
 |
2021-01-20 13:12:56 |
New \'FreakOut\' Malware Ensnares Linux Devices Into Botnet (lien direct) |
A recently identified piece of malware is targeting Linux devices to ensnare them into a botnet capable of malicious activities such as distributed denial of service (DDoS) and crypto-mining attacks.
|
Malware
|
|
|
 |
2021-01-19 18:25:55 |
Hundreds of Networks Still Host Devices Infected With VPNFilter Malware (lien direct) |
The VPNFilter malware is still present in hundreds of networks and malicious actors could take control of the infected devices, according to researchers at cybersecurity firm Trend Micro.
|
Malware
|
VPNFilter
VPNFilter
|
|
 |
2021-01-19 13:09:32 |
SolarWinds Hackers Used \'Raindrop\' Malware for Lateral Movement (lien direct) |
The threat group behind the supply chain attack that targeted Texas-based IT management company SolarWinds leveraged a piece of malware named Raindrop for lateral movement and deploying additional payloads, Broadcom-owned cybersecurity firm Symantec reported on Tuesday.
|
Malware
Threat
|
Solardwinds
|
|
 |
2021-01-15 13:12:25 |
Malvuln Project Catalogues Vulnerabilities Found in Malware (lien direct) |
A researcher has launched Malvuln, a project that catalogues vulnerabilities discovered in malware and provides information on how those vulnerabilities can be exploited.
|
Malware
|
|
|
 |
2021-01-12 12:04:51 |
\'Sunspot\' Malware Used to Insert Backdoor Into SolarWinds Product in Supply Chain Attack (lien direct) |
CrowdStrike, one of the cybersecurity companies called in by IT management firm SolarWinds to investigate the recently disclosed supply chain attack, on Monday shared details about a piece of malware used by the attackers to insert a backdoor into SolarWinds' Orion product.
|
Malware
|
Solardwinds
|
★★★
|
 |
2021-01-11 13:47:16 |
Malware Used in SolarWinds Attack Linked to Backdoor Attributed to Turla Cyberspies (lien direct) |
Researchers have identified some similarities between the Sunburst malware used in the SolarWinds supply chain attack and Kazuar, a backdoor that appears to have been used by the Russia-linked cyber-espionage group known as Turla.
|
Malware
Mobile
|
Solardwinds
Solardwinds
|
|
 |
2021-01-07 19:01:38 |
Ezuri Memory Loader Abused in Linux Attacks (lien direct) |
Security researchers at AT&T's Alien Labs have identified multiple malware attacks leveraging the Ezuri memory loader to execute payloads without writing them to disk.
|
Malware
|
|
|
 |
2021-01-06 20:44:06 |
\'Earth Wendigo\' Hackers Exfiltrate Emails Through JavaScript Backdoor (lien direct) |
A newly identified malware attack campaign has been exfiltrating emails from targeted organizations using a JavaScript backdoor injected into a webmail system widely used in Taiwan.
|
Malware
|
|
★★★★★
|
 |
2019-10-07 13:44:35 |
New Campaign Targets Drupalgeddon2 Flaw to Install Malware (lien direct) |
Hackers continue to target the Drupal vulnerability named Drupalgeddon2 to install malware onto unpatched systems, Akamai's security researchers have discovered.
|
Malware
Vulnerability
|
|
|
 |
2019-10-03 14:49:58 |
Adwind Malware Used in Attacks Against U.S. Petroleum Firms (lien direct) |
Attackers using the Adwind remote access Trojan (RAT) are targeting petroleum firms in the United States in a recent campaign, researchers from Netskope report.
|
Malware
|
|
|
 |
2019-10-03 14:30:31 |
Alabama Hospital System Halts Admissions Amid Malware Attack (lien direct) |
A hospital system that serves a large part of rural west Alabama temporarily quit accepting new patients after a ransomware attack crippled some of its computer systems Tuesday.
|
Ransomware
Malware
|
|
|
 |
2019-10-02 18:59:10 |
MasterMana Campaign Combines Stealth, Free Services and Old Malware (lien direct) |
An ongoing cybercrime campaign that started as early as December 2018, has avoided widespread detection through a combination of stealth tactics and hiding in plain sight.
|
Malware
|
|
|
 |
2019-09-30 15:05:45 |
\'WhiteShadow\' Downloader Employs Microsoft SQL for Malware Delivery (lien direct) |
Microsoft Office macros that collectively act as a stage downloader are utilizing Microsoft SQL queries to fetch malicious payloads, Proofpoint's security researchers report.
|
Malware
|
|
|
 |
2019-09-30 12:10:18 |
New \'Gucci\' IoT Botnet Targets Europe (lien direct) |
Security researchers with SecNiche Security Labs have discovered a new piece of malware that attempts to ensnare Internet of Things (IoT) devices in Europe into a distributed denial-of-service (DDoS)-capable botnet.
|
Malware
|
|
|
 |
2019-09-27 18:45:52 |
Malware Delivery Campaign Employs Advanced Fileless Techniques (lien direct) |
A recently observed malware delivery campaign employs advanced fileless techniques and an elusive network infrastructure that allows it to remain largely undetected.
|
Malware
|
|
|
 |
2019-09-27 13:08:04 |
German Auto and Defense Firm Rheinmetall Says Malware Hit Several Plants (lien direct) |
Germany-based car parts and defense solutions provider Rheinmetall announced on Thursday that production at its automotive plants in the United States, Brazil and Mexico was disrupted as a result of a malware attack.
|
Malware
|
|
|
 |
2019-09-24 18:56:47 |
North Korean-Linked Dtrack RAT Discovered (lien direct) |
An investigation into banking malware targeting India has led to the discovery of a new remote access Trojan (RAT) employed by the North Korean-linked Lazarus group, Kaspersky reports.
|
Malware
Medical
|
APT 38
|
|
 |
2019-09-24 14:19:40 |
Additional U.S. Utilities Targeted With LookBack Malware (lien direct) |
Proofpoint security researchers have observed a new series of phishing attacks targeting entities in the United States utilities sector in an attempt to deliver the LookBack remote access Trojan (RAT).
|
Malware
|
|
|
 |
2019-09-23 07:32:10 |
Mac Malware Poses as Trading App (lien direct) |
A Mac Trojan focused on stealing users' information was found masquerading as a legitimate trading application, Trend Micro's security researchers report.
|
Malware
|
|
|
 |
2019-09-19 17:49:16 |
Phishing Emails Deliver Amadey Malware to U.S. Taxpayers (lien direct) |
A recently observed phishing campaign is targeting taxpayers in the United States in an attempt to infect their machines with a piece of malware named Amadey, Cofense security researchers have discovered.
|
Malware
|
|
|
 |
2019-09-13 14:10:04 |
WiryJMPer Dropper Employs Heavy Obfuscation to Deliver Netwire (lien direct) |
A recently discovered malware dropper employs heavy obfuscation and poses as a virtual coin wallet, in an attempt to deliver a Netwire payload, Avast's security researchers reveal.
|
Malware
|
|
|
 |
2019-09-11 02:10:05 |
Ransomware Attack Hits School District Twice in 4 Months (lien direct) |
A Connecticut school district's teachers are working without computer access less than a week after a second malware attack targeted the district's servers.
The Republican American reports the district shut any computers connected to the Wolcott school district networks Sept. 4 after a staff member reported suspicious activity on a district computer.
|
Ransomware
Malware
|
|
|
 |
2019-09-09 14:09:05 |
U.S. Cyber Command Adds North Korean Malware Samples to VirusTotal (lien direct) |
The U.S. Cyber Command (USCYBERCOM) this week released 11 malware samples to VirusTotal, all of which appear related to the notorious North Korean-linked threat group Lazarus.
|
Malware
Threat
|
APT 38
|
|