FreshRSS

πŸ”’
☐ β˜† βœ‡ The Hacker News

Ukrainian Hacker Suspected to be Behind "Free Download Manager" Malware Attack

By THN β€” September 21st 2023 at 08:48
The maintainers of Free Download Manager (FDM) have acknowledged a security incident dating back to 2020 that led to its website being used to distribute malicious Linux software. "It appears that a specific web page on our site was compromised by a Ukrainian hacker group, exploiting it to distribute malicious software," itΒ saidΒ in an alert last week. "Only a small subset of users, specifically
☐ β˜† βœ‡ The Hacker News

Free Download Manager Site Compromised to Distribute Linux Malware to Users for 3+ Years

By THN β€” September 14th 2023 at 13:18
A download manager site served Linux users malware that stealthily stole passwords and other sensitive information for more than three years as part of a supply chain attack. The modus operandi entailed establishing a reverse shell to an actor-controlled server and installing a Bash stealer on the compromised system. The campaign, which took place between 2020 and 2022, is no longer active. "
☐ β˜† βœ‡ The Hacker News

New Malvertising Campaign via Google Ads Targets Users Searching for Popular Software

By Ravie Lakshmanan β€” December 29th 2022 at 07:48
Users searching for popular software are being targeted by a new malvertising campaign that abuses Google Ads to serve trojanized variants that deploy malware, such as Raccoon Stealer and Vidar. The activity makes use of seemingly credible websites with typosquatted domain names that are surfaced on top of Google search results in the form of malicious ads by hijacking searches for specific
☐ β˜† βœ‡ The Hacker News

Trojanized Windows 10 Installer Used in Cyberattacks Against Ukrainian Government Entities

By Ravie Lakshmanan β€” December 16th 2022 at 14:00
Government entities in Ukraine have been breached as part of a new campaign that leveraged trojanized versions of Windows 10 installer files to conduct post-exploitation activities. Mandiant, which discovered the "socially engineered supply chain" attack around mid-July 2022, said the malicious ISO files were distributed via Ukrainian- and Russian-language Torrent websites. It's tracking the
☐ β˜† βœ‡ The Hacker News

New NullMixer Malware Campaign Stealing Users' Payment Data and Credentials

By Ravie Lakshmanan β€” September 27th 2022 at 13:19
Cybercriminals are continuing to prey on users searching for cracked software by directing them to fraudulent websites hosting weaponized installers that deploy malware calledΒ NullMixerΒ on compromised systems. "When a user extracts and executes NullMixer, it drops a number of malware files to the compromised machine," cybersecurity firm Kaspersky said in a Monday report. "It drops a wide variety
❌