Security news that informs and inspires

2376 articles by

Lazarus Group Targets IIS Servers

The Lazarus Group has been compromising vulnerable IIS servers in an ongoing campaign.

North Korea

Apple Fixes Three Actively Exploited WebKit Flaws

The Apple vulnerabilities (CVE-2023-32409, CVE-2023-28204 and CVE-2023-32373) exist in WebKit.

Apple, Webkit, Ios

Decipher Podcast: Source Code 5/19

Welcome back to Source Code, Decipher's weekly news wrap podcast with input from our sources.

Podcast, Source Code

Malicious NPM Packages Hid TurkoRat Infostealer

Researchers said that it "is difficult to measure" the potential long-term impact of TurkoRat infections on developer systems.

Npm Packages, Malware

MacOS Attackers Likely to Abuse Go-Based Cobalt Strike Variant

Researchers warn that a Go-based implementation of Cobalt Strike beacons, called "Geacon," is lucrative for threat actors in attacks targeting macOS.

Macos, Cobalt Strike