Compromised Website Images Camouflage ObliqueRAT Malware
.
The ObliqueRAT malware is now cloaking its payloads as seemingly-innocent image files that are hidden on compromised websites.
Colonial Pipeline paid $5 million to the DarkSide ransomware group to restore operations within hours after a ransomware attack paralysed fuel supplies across the U.S. eastern seaboard, Bloomberg has revealed. Last Friday, Colonial Pipeline announced via a press release that it suffered a ransomware attack and had to take certain systems offline to contain the…
Compromised Microsoft Exchange Server Used to Host Cryptominer | IT Security News 13. April 2021 Researchers say an unknown attacker is targeting vulnerable Exchange Servers with a payload hosted on a compromised Exchange Server. Like this: Like Loading… Related Tags: Dark Reading: Sponsors Endpoint Cybersecurity www.endpoint-cybersecurity.com – Consulting in building your security products– Employee awareness…
news, world Iran’s rail system has come under cyberattack, a semi-official news agency reports, with hackers posting fake messages about train delays or cancellations on display boards at stations across the country. The hackers posted messages such as “long delayed because of cyberattack” or “cancelled” on the boards. They also urged passengers to call for…
Business Email Compromise (BEC) , Fraud Management & Cybercrime , Fraud Risk Management Company Says West African Group Used Homoglyph Techniques to Trick Victims Doug Olenick (DougOlenick) • July 21, 2021 Microsoft has announced the takedown of 17 domains that a threat group operating out of West Africa used to host fake Microsoft…
The U.S. National Security Agency (NSA) has published guidance on how security professionals can secure enterprise networks and sensitive data by adopting a Zero Trust security model. Titled “Embracing a Zero Trust Security Model,” the document details the benefits and challenges of the security model, and also provides a series of recommendations on the implementation…
Facebook said it has disrupted a cyberespionage operation orchestrated by China-backed hackers that has been targeting activists, journalists and dissidents predominantly among Uyghurs living abroad. The threat actor behind this campaign is believed to be a hacker group known as Earth Empusa or Evil Eye. The malicious actor used Facebook to distribute links…