Cyber Security News

DDoS Malware Distributed Through Compromised Linux SSH Servers
Date

DDoS Malware Distributed Through Compromised Linux SSH Servers

According to a recent report by AhnLab Security Emergency Response Center (ASEC), researchers discovered an attack campaign by an unknown threat actor using poorly managed Linux SSH servers to distribute Tsunami DDoS, a distributed-denial-of-service malware, along with several other malware strains

Rhysida Ransomware Used In Attack On The Chilean Army
Date

Rhysida Ransomware Used In Attack On The Chilean Army

The threat actors behind one of the ransomware's newest kids on the block Rhysida have announced they will leak documents belonging to the Chilean Army. This comes after the Army confirmed that systems were impacted in a security incident detected over the weekend on May 27, 2023. Chilean cybe

Sancionated Crypto Mixer Tornado Cash Hijacked
Date

Sancionated Crypto Mixer Tornado Cash Hijacked

Following a tweet by samczum and subsequent investigations by journalists at Bloomberg, the sanctioned crypto mixer has suffered the cryptocurrency version of a hostile takeover. According to the tweet, samczum, a security researcher for crypto investment firm Paradigm, said that an attacker g

Threat Actors Actively Exploiting WordPress Plugin Flaw
Date

Threat Actors Actively Exploiting WordPress Plugin Flaw

According to a recent report by Akamai, threat actors are actively looking to exploit a critical vulnerability found in a WordPress plugin, some 24 hours after proof-of-concept code was released to the public at large. The saga was summarized by Akamai researchers as follows, A recent examp

New Malware Granting Threat Actors Hidden VNC Access
Date

New Malware Granting Threat Actors Hidden VNC Access

According to a new report published by Elastic Security Labs, their security researchers discovered a new malware strain dubbed LOBSHOT. The discovery was made when researchers notices a spike a malvertising campaigns at the start of  2023, where threat actors distributed malware strains using an e

Action1 RMM Seen Abused In Ransomware Attacks
Date

Action1 RMM Seen Abused In Ransomware Attacks

Following several reports from security firms, it appears that ransomware operators are abusing the remote monitoring and management (RMM) product Action1 RMM which is used by Managed Service Providers (MSPs) to manage endpoints on customer networks remotely. The software package allows patch