Threat actors have shifted from using malicious macros to malicious LNK files for initial access. This is due to Microsoft’s...
Microsoft has announced that Excel 4.0 (XLM) macros will now be disabled by default to protect customers from malicious documents. In October, the company first revealed in...
North Korea-linked APT group BlueNoroff has been found targeting cryptocurrency startups with fake MetaMask browser extensions in a campaign dubbed SnatchCrypto. What has happened? SnatchCrypto is focused on different...
The rise of editable Portable Document Files created a new avenue for attackers, but the right configuration can protect most systems without compromising functionality, NSA says....
A new phishing campaign using fake shipping delivery lures installs the STRRAT remote access trojan on unsuspecting victim’s devices. Fortinet discovered the new campaign after spotting...
A massive supply chain attack compromised 93 WordPress themes and plugins to contain a backdoor, giving threat-actors full access to websites. In total, threat actors compromised...
McAfee has patched a security vulnerability discovered in the company’s McAfee Agent software for Windows enabling attackers to escalate privileges and execute arbitrary code with SYSTEM privileges. McAfee...
The Red Cross was hit by a sophisticated cyberattack, which has affected the sensitive information of over 515,00 vulnerable people. The attack forced the Red Cross...
Kaspersky researchers have uncovered the third known case of a firmware bootkit in the wild. Dubbed MoonBounce, this malicious implant is hidden within Unified Extensible Firmware...
Google has announced on Thursday that it has started warning users when they open potentially suspicious or dangerous files hosted on Google Drive. “We will display a warning...
Here’s a look at the most interesting products from the past week, featuring releases from Axonius, GrammaTech, Kovrr, SpyCloud, and TAC Security. Kovrr Quantum enables organizations...
Recent Comments