FreshRSS

πŸ”’
☐ β˜† βœ‡ Naked Security

β€œCustomer complaint” email scam preys on your fear of getting into trouble at work

By Paul Ducklin β€” November 5th 2021 at 19:49
Stop. Think. Connect. Don't let the crooks trick you into acting in haste.

☐ β˜† βœ‡ The Hacker News

Malicious IIS Extensions Gaining Popularity Among Cyber Criminals for Persistent Access

By Ravie Lakshmanan β€” July 27th 2022 at 07:17
Threat actors are increasingly abusing Internet Information Services (IIS) extensions to backdoor servers as a means of establishing a "durable persistence mechanism." That's according to aΒ new warningΒ from the Microsoft 365 Defender Research Team, which said that "IIS backdoors are also harder to detect since they mostly reside in the same directories as legitimate modules used by target
☐ β˜† βœ‡ The Hacker News

Cyber Attacks Against Middle East Governments Hide Malware in Windows Logo

By Ravie Lakshmanan β€” September 30th 2022 at 11:52
An espionage-focused threat actor has been observed using a steganographic trick to conceal a previously undocumented backdoor in a Windows logo in its attacks against Middle Eastern governments. Broadcom's Symantec Threat Hunter Team attributed the updated tooling to a hacking group it tracks under the nameΒ Witchetty, which is also known asΒ LookingFrog, a subgroup operating under the TA410
☐ β˜† βœ‡ Naked Security

Tracers in the Dark: The Global Hunt for the Crime Lords of Crypto

By Paul Ducklin β€” February 6th 2023 at 21:53
Hear renowned cybersecurity author Andy Greenberg's thoughtful commentary about the "war on crypto" as we talk to him about his new book...

☐ β˜† βœ‡ The Hacker News

Chinese Hackers Targeting European Entities with New MQsTTang Backdoor

By Ravie Lakshmanan β€” March 3rd 2023 at 09:56
The China-aligned Mustang Panda actor has been observed using a hitherto unseen custom backdoor calledΒ MQsTTangΒ as part of an ongoing social engineering campaign that commenced in January 2023. "Unlike most of the group's malware, MQsTTang doesn't seem to be based on existing families or publicly available projects," ESET researcher Alexandre CΓ΄tΓ© CyrΒ saidΒ in a new report. Attack chains
☐ β˜† βœ‡ The Hacker News

Operation Soft Cell: Chinese Hackers Breach Middle East Telecom Providers

By Ravie Lakshmanan β€” March 23rd 2023 at 09:29
Telecommunication providers in the Middle East are the subject of new cyber attacks that commenced in the first quarter of 2023. The intrusion set has been attributed to a Chinese cyber espionage actor associated with a long-running campaign dubbedΒ Operation Soft CellΒ based on tooling overlaps. "The initial attack phase involves infiltrating Internet-facing Microsoft Exchange servers to deploy
❌