Tag ESET

Experts Identify Malware Threats Targeting Corporate Networks in Latin America

New Espionage Campaign Unveiled: Targets Corporate Networks in Venezuela On Thursday, cybersecurity researchers revealed an ongoing espionage campaign primarily aimed at corporate networks in Spanish-speaking countries, with Venezuela being the focal point. This newly identified threat, named “Bandidos” by security firm ESET, employs an enhanced variant of the notorious Bandook…

Read MoreExperts Identify Malware Threats Targeting Corporate Networks in Latin America

Experts Connect Sidewalk Malware Attacks to Grayfly, a Chinese Hacker Group

A previously undocumented backdoor, identified as SideWalk, has recently been discovered targeting an unnamed computer retail company in the United States, linked to a persistent Chinese espionage campaign known as Grayfly. This finding raises significant concerns in the cybersecurity community regarding the growing sophistication of foreign threats. In late August,…

Read MoreExperts Connect Sidewalk Malware Attacks to Grayfly, a Chinese Hacker Group

New APT Hacker Group Targeting Hotels and Governments Globally

A sophisticated advanced persistent threat (APT) has been identified as the perpetrator behind a series of global cyberattacks targeting hotels, various governmental entities, international organizations, engineering firms, and law offices. This campaign has come to the attention of cybersecurity experts worldwide. The Slovak cybersecurity firm ESET has attributed these attacks…

Read MoreNew APT Hacker Group Targeting Hotels and Governments Globally

Researchers Raise Alarm Over FontOnLake Rootkit Malware Aimed at Linux Systems

Recent findings from cybersecurity researchers have unveiled a targeted campaign likely aimed at entities in Southeast Asia utilizing a novel form of Linux malware, identified as “FontOnLake.” This malware is designed to facilitate remote access for its operators, gather credentials, and serve as a proxy server. The cybersecurity firm ESET,…

Read MoreResearchers Raise Alarm Over FontOnLake Rootkit Malware Aimed at Linux Systems

CISA Calls on Agencies to Address Critical “Array Networks” Vulnerability as Attacks Escalate

On Monday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) included a recently patched critical vulnerability affecting Array Networks AG and vxAG secure access gateways in its Known Exploited Vulnerabilities (KEV) catalog. This addition follows credible reports indicating active exploitation of the flaw in real-world scenarios. The vulnerability, designated as…

Read MoreCISA Calls on Agencies to Address Critical “Array Networks” Vulnerability as Attacks Escalate

Ukraine Uncovers Gamaredon Group: Identifies Russian FSB Officers Behind Hacking Operations

Ukraine’s leading law enforcement and counterintelligence agency has revealed the identities of five individuals allegedly involved in a series of digital intrusions tied to a cyber-espionage group known as Gamaredon, with connections to Russia’s Federal Security Service (FSB). This disclosure highlights the agency’s ongoing efforts to combat cyber threats directed…

Read MoreUkraine Uncovers Gamaredon Group: Identifies Russian FSB Officers Behind Hacking Operations

Romantic Comedy Uncovers Sophisticated Cyberattacks Targeting Zero-Day Flaws in Firefox and Windows

RomCom Exploits Zero-Day Vulnerabilities in Firefox and Windows A sophisticated cyber operation attributed to the Russia-aligned threat actor known as RomCom has been reported, focusing on the exploitation of two zero-day vulnerabilities—one in Mozilla Firefox and another in Microsoft Windows. These attacks have been designed to deploy RomCom’s proprietary backdoor…

Read MoreRomantic Comedy Uncovers Sophisticated Cyberattacks Targeting Zero-Day Flaws in Firefox and Windows

Hackers Exploit Malicious IIS Server Module to Steal Microsoft Exchange Credentials

Recent cybersecurity analysis has uncovered the deployment of a newly identified binary called “Owowa,” specifically targeting Microsoft Exchange’s Outlook Web Access servers. This malicious Internet Information Services (IIS) web server module seeks to extract user credentials and facilitate remote command execution on compromised systems. The Owowa module, reportedly written in…

Read MoreHackers Exploit Malicious IIS Server Module to Steal Microsoft Exchange Credentials