The mishandling of HTTP headers left websites built on top of the Symfony platform vulnerable to web cache poisoning attacks. Symfony, a popular PHP framework for web applications,...
Three APT hacking groups from India, Russia, and China, were observed using a novel RTF (rich text format) template injection technique in their recent phishing campaigns....
In the span of only four months, four large Android malware families were spread via Google Play, resulting in 300.000+ infections via multiple dropper apps, according to ThreatFabric research. ...
A “dormant” webpage belonging to the UK government’s Department of Transport (DfT) has been deleted after it was found to be serving up pornographic content to site visitors....
Japanese multinational conglomerate Panasonic disclosed a security breach after unknown threat actors gained access to servers on its network this month. “Panasonic Corporation has confirmed that...
An Iranian threat actor is stealing Instagram and Google credentials of Farsi-speaking individuals around the world. The threat group is using a new PowerShell-based stealer, PowerShortShell,...
North Korean state-sponsored hackers posed as Samsung recruiters and sent fake job offers to employees at South Korean security companies that sell anti-malware software, Google said...
Ukrainian police say they have put an end to the activities of an international phone-hacking collective after seizing incriminating evidence in a series of raids. Dubbed...
A newly discovered Iranian threat actor is stealing Google and Instagram credentials belonging to Farsi-speaking targets worldwide using a new PowerShell-based stealer dubbed PowerShortShell by security...
The Security Service of Ukraine (SSU) has arrested five members of the international ‘Phoenix’ hacking group who specialize in the remote hacking of mobile devices. The...