Unprotected API could expose names, places, times of bookings made using app An open-source scheduling platform has an access control vulnerability. Unauthenticated attackers had…
General
Human factors are still a major issue for organisations
Egress reports that 56% of IT leaders say their non-technical staff are partially prepared or not at all prepared for a security attack. A…
FFDroider and Lightning info-stealers are targeting users in the wild, according to researchers
FFDroider and Lightning Stealer are two different information-stealing malwares that are capable of syphoning data and initiating subsequent attacks, according to cybersecurity analysts. In…
Malware targeting the AWS Lambda serverless platform has been identified for the first time
Cado Security researchers claim to have identified the first publicly known malware targeted against Amazon Web Services’ serverless computing technology, AWS Lambda, indicating a…
Hackers are distributing fake shopping apps to steal Malaysian users’ banking information.
Hackers are distributing fake shopping apps to steal Malaysian users’ banking information. Since at least November 2021, threat actors have been distributing malicious applications…
Malware targeting, never before, AWS Lambda serverless platform uncovered
A new malware targeting Amazon Web Services (AWS) Lambda serverless computing platform has been detected. Called “Denonia,” after the name of the domain it…
Hive’s New Detection-Eluding Technique is IPfuscation.
The Hive ransomware group has adopted a new obfuscation technique to evade detection. The technique involves IPv4 addresses and a series of conversions leading…
WhatsApp Voice message Phishing emails spreading software that steals personal information.
A new WhatsApp phishing campaign has been detected, posing as WhatsApp’s voice message function and attempting to deliver malware to at least 27,655 email…
Researchers reveal Colibri’s modus operandi
Cybersecurity researchers have thoroughly reported a “simple but efficient” persistence method used by a relatively new malware loader called “Colibri.” Colibri has been put…
North Korean hackers using infected wallet apps to steal crypto
The Lazarus Group, the government-backed North Korean hacking group, has been identified as operating an attack campaign that uses trojanized decentralized finance (DeFi) wallet…