Nexus: A New Rising Android Banking Trojan Targeting 450 Financial Apps
Mar 23, 2023Ravie LakshmananMobile Security / Banking
An emerging Android banking trojan dubbed Nexus has already been adopted by several threat actors to target...
Shell DDoS Malware Attacks Poorly Managed Linux SSH Servers
The ShellBot threat has turned out to be a new type of malware designed to target Linux SSH servers poorly managed as part of...
German and South Korean Agencies Warn of Kimsuky’s Expanding Cyber Attack Tactics
Mar 23, 2023Ravie LakshmananCyber Attack / Browser Security
German and South Korean government agencies have warned about cyber attacks mounted by a threat actor...
NAPLISTENER: New Malware in REF2924 Group’s Arsenal for Bypassing Detection
Mar 22, 2023Ravie LakshmananNetwork Security / Cyber Threat
The threat group tracked as REF2924 has been observed deploying previously unseen malware in its attacks...
Preventing Insider Threats in Your Active Directory
Mar 22, 2023The Hacker NewsPassword Security / Active Directory
Active Directory (AD) is a powerful authentication and directory service used by organizations worldwide. With...
Google to Reduce SSL Certificate Lifespan to 90 Days
Recently, Google declared its plan to reduce the maximum validity for public TLS (SSL) certificates from 398 to 90 days.
Under its “Moving Forward, Together”...
CISA Alerts on Critical Security Vulnerabilities in Industrial Control Systems
Mar 22, 2023Ravie LakshmananICS/SCADA Security
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has released eight Industrial Control Systems (ICS) advisories on Tuesday, warning...
ScarCruft’s Evolving Arsenal: Researchers Reveal New Malware Distribution Techniques
Mar 22, 2023Ravie LakshmananCyber Threat Intelligence
The North Korean advanced persistent threat (APT) actor dubbed ScarCruft is using weaponized Microsoft Compiled HTML Help (CHM)...
Rogue NuGet Packages Infect .NET Developers with Crypto-Stealing Malware
Mar 22, 2023Ravie LakshmananDevOpsSec / Malware
The NuGet repository is the target of a new "sophisticated and highly-malicious attack" aiming to infect .NET developer...
Hackers Weaponized and Exploited Over 55 Zero-days
Mandiant researchers have recently reported that 55 zero-day vulnerabilities were actively exploited in 2022, most against the following brands and their products:-
Researchers state that...











