Tag Microsoft

Popular Android Apps, Including Xiaomi and WPS Office, Exposed to File Overwrite Vulnerability

Several widely-used Android applications on the Google Play Store have been identified as vulnerable due to a path traversal vulnerability known as the “Dirty Stream” attack. This flaw could enable malicious applications to overwrite files within the affected apps’ home directories. According to Dimitrios Valsamaras from the Microsoft Threat Intelligence…

Read MorePopular Android Apps, Including Xiaomi and WPS Office, Exposed to File Overwrite Vulnerability

Gaza-Related Cyber Threat Actor Aims at Israeli Energy and Defense Industries

Cyber Attacks Linked to Gaza-Based Threat Actor Targeting Israeli Organizations A recent series of cyber attacks has been traced back to a threat actor based in Gaza, primarily focusing on Israeli private-sector entities in the energy, defense, and telecommunications sectors. Findings were disclosed by Microsoft in its fourth annual Digital…

Read MoreGaza-Related Cyber Threat Actor Aims at Israeli Energy and Defense Industries

Russian Cozy Bear Hackers Target Critical Sectors Using Microsoft and AWS Phishing Tactics

Cozy Bear, a hacking group linked to the Russian government, is executing a new phishing campaign that is impacting over 100 organizations worldwide. Utilizing sophisticated tactics, the attackers are employing signed Remote Desktop Protocol (RDP) files disguised as legitimate documents to establish remote access and extract sensitive information. Organizations should…

Read MoreRussian Cozy Bear Hackers Target Critical Sectors Using Microsoft and AWS Phishing Tactics

FBI and CISA Alert on Increasing AvosLocker Ransomware Threats Targeting Critical Infrastructure

An alarming trend has emerged as the AvosLocker ransomware group has been implicated in attacks targeting crucial infrastructure sectors across the United States, with some incidents surfacing as recently as May 2023. This information comes from a comprehensive cybersecurity advisory jointly issued by the U.S. Cybersecurity and Infrastructure Security Agency…

Read MoreFBI and CISA Alert on Increasing AvosLocker Ransomware Threats Targeting Critical Infrastructure

Thousands of Compromised TP-Link Routers Exploit Years-Long Account Takeover Campaigns

A significant cybersecurity threat has emerged involving a botnet orchestrated by hackers linked to the Chinese government. This network, comprised of thousands of compromised routers, cameras, and other Internet-connected devices, has been employed to execute sophisticated password spray attacks targeted at users of Microsoft’s Azure cloud service. The warning about…

Read MoreThousands of Compromised TP-Link Routers Exploit Years-Long Account Takeover Campaigns

Exploitation of MS Exchange Server Vulnerabilities to Deploy Keyloggers in Targeted Attacks

In recent developments, a previously unidentified threat actor has been leveraging existing security vulnerabilities in Microsoft Exchange Server to deploy keylogger malware, with targets primarily located in Africa and the Middle East. This alarming trend was highlighted by Positive Technologies, a Russian cybersecurity firm, which reports over 30 victims, including…

Read MoreExploitation of MS Exchange Server Vulnerabilities to Deploy Keyloggers in Targeted Attacks

Chinese Hackers Employ Quad7 Botnet for Credential Theft

Hackers Exploiting Password Spraying Techniques Target Microsoft Accounts In a recently issued alert, Microsoft has warned of ongoing password spraying attacks orchestrated by multiple Chinese hacking groups utilizing a botnet known as Quad7. Named after a TCP routing port number, this botnet is comprised of approximately 8,000 compromised devices, predominantly…

Read MoreChinese Hackers Employ Quad7 Botnet for Credential Theft