Security news that informs and inspires

All Articles

2327 articles:

Google Reveals More Details of North Korean APT43 Activity

Google's elite Threat Analysis Group has revealed more details of the North Korean APT43 group, which is refers to as Archipelago.

North Korea

Lazarus Group Gopuram Backdoor Found at Some 3CX Victims

A backdoor named Gopuram used by the Lazarus Group has been found in a small number of environments compromised in the 3CX supply chain attack.

3cx, North Korea

Supply Chain Attacks: ‘The Best Bang For Your Buck’

The supply chain attack against 3CX may have been planned for more than a year, and such intrusions are the best return on investment for attackers, researchers say.

Supply Chain Security, 3cx, Solarwinds

Winter Vivern Goes After Diplomats and Government Agencies

The Winter Vivern APT group is now targeting government agencies and diplomats from the United States and European countries.

Malware, Russia

3CX Windows App Compromised in Supply Chain Attack

Two versions of the 3CX Windows electron app were compromised in a targeted supply chain attack, and researchers have connected it to a North Korean attack group.

Malware

New Spyware Campaigns Exploit iOS and Android Zero Days

Researchers at Google and Amnesty International have found new spyware campaigns that exploited multiple iOS, Android, and Linux zero days.

Google, Government, Apple

Apple Patches iOS Zero Day, TCC Bypass in macOS

Apple has patched a zero day in WebKit that has been exploited in the wild, as well as a serious security bypass bug in macOS.

Apple

Attackers Deploy New IcedID Variant

Two threat groups have been identified deploying a new variant of the IcedID malware, which often is seen in conjunction with Emotet.

Malware

Chinese APT Group Hits Middle East Telecoms

A Chinese APT team has targeted telecom providers in the Middle East with a campaign that may be lined to the Operation Soft Cell actors.

China

New Threat Actor Hits Ukrainian Agencies

A previously unknown APT is targeting Ukrainian government agencies with malware known as PowerMagic and CommonMagic.

APT, Ukraine

Six Flaws Fixed in libcurl 8

Version 8 of libcurl has been released, patching six vulnerabilities, including an authentication bypass.

Vulnerabilities

Q&A: Chris Morales

Chris Morales, CISO at Netenrich, has held various roles throughout his career before becoming a CISO, including ones advising and designing incident response and threat management programs for enterprise organizations.

CISO Q&a

US, German Authorities Take Down ChipMIxer Platform

U.S. and German law enforcement authorities have seized the assets and infrastructure of the ChipMixer cryptocurrency mixing platform, alleging it launders ransomware payments.

Ransomware

Winter Vivern APT Targeting Ukrainian, European Organizations

A low-profile attack group known as Winter Vivern has recently been targeting government and private organizations in Ukraine, Poland, Italy, and elsewhere.

APT, Russia

Microsoft Patches Two Bugs Under Active Attack

In its March Patch Tuesday release, Microsoft has fixed two vulnerabilities (CVE-2023-23397) and (CVE-2023-24880) that have been exploited in the wild.

Microsoft