Tag ESET

Chinese Group TheWizards Utilizes IPv6 to Deploy WizardNet Backdoor

ESET has recently uncovered Spellbinder, a novel tool employed by TheWizards, a cyber espionage group linked to China, to execute Adversary-in-the-Middle (AitM) attacks and disseminate their WizardNet backdoor through compromised software updates. This advanced cyber espionage operation, active since at least 2022, demonstrates TheWizards’ unique approach in infiltrating computer networks.…

Read MoreChinese Group TheWizards Utilizes IPv6 to Deploy WizardNet Backdoor

Consider the Consequences Before Crafting That ChatGPT Action Figure

Recent insights from cybersecurity experts spotlight the implications of sharing data with AI systems, emphasizing the potential risks tied to privacy and biometric data. Jake Moore, a global cybersecurity adviser at ESET, underscores this concern, particularly illustrated by his creation of an action figure designed to highlight the privacy vulnerabilities…

Read MoreConsider the Consequences Before Crafting That ChatGPT Action Figure

Gamaredon: The Turncoat Spies Persistently Targeting Ukraine with Cyber Attacks

Russian state-sponsored cyber activities have come under renewed scrutiny, particularly the actions of the Gamaredon hacking group, a lesser-known entity compared to some of its more flamboyant counterparts like Sandworm or Turla. Operatives linked to the FSB—Russia’s federal security service—are believed to be behind Gamaredon, which has established itself as…

Read MoreGamaredon: The Turncoat Spies Persistently Targeting Ukraine with Cyber Attacks

Chinese PlushDaemon APT Compromises S. Korean IPany VPN with Backdoor Access

Cybersecurity firm ESET has uncovered a previously unidentified Advanced Persistent Threat (APT) group known as “PlushDaemon,” which is reportedly aligned with China and has been targeting South Korea through sophisticated cyber espionage tactics. This revelation marks a significant development in the cybersecurity landscape, as PlushDaemon employs an innovative attack strategy…

Read MoreChinese PlushDaemon APT Compromises S. Korean IPany VPN with Backdoor Access

Cyberattack Impacting School Boards Nationwide: What Families Should Know and Do About Potential Data Exposure

In recent weeks, school boards across Canada, including some of the nation’s largest, have reported a significant data breach involving PowerSchool, a third-party service used by K-12 institutions to manage student data. Investigations into this cyber incident are ongoing, revealing that student information dating back several decades may have been…

Read MoreCyberattack Impacting School Boards Nationwide: What Families Should Know and Do About Potential Data Exposure

Microsoft Updates Windows to Address Secure Boot Bypass Vulnerability

For the past several months, a significant vulnerability affecting the security of Windows devices has been identified, allowing potential bypass of an industry-standard protection mechanism designed to thwart firmware infections. On Tuesday, Microsoft announced a patch for the vulnerability tracked as CVE-2024-7344. Currently, the implications for Linux systems remain uncertain.…

Read MoreMicrosoft Updates Windows to Address Secure Boot Bypass Vulnerability

State-Sponsored Entities Fuel the Ransomware Threat Landscape

Recent trends in ransomware attacks reveal a concerning evolution in tactics, as highlighted by the latest Threat Report from ESET. This report identifies a significant shift towards state-sponsored cybercriminal activities, with orchestration increasingly coming from government-affiliated groups focused on disruption and financial gain. These actors leverage ransomware not only to…

Read MoreState-Sponsored Entities Fuel the Ransomware Threat Landscape