Items tagged with Malware
by
Nathan Wasson - Fri, Feb 03, 2023
Last year saw a rise in threat actors abusing Microsoft Office macros to infect their victims’ systems with malware, prompting Microsoft to block macros embedded in documents downloaded from the internet. In response, threat actors have...
Read more...
by
Nathan Wasson - Thu, Feb 02, 2023
We often report on phishing campaigns involving fraudulent customer support agents who trick victims into giving up sensitive information or installing malware on their systems. However, sometimes threat actors flip this script, instead...
Read more...
by
Ryan Whitwam - Mon, Jan 23, 2023
The key to any malware campaign is getting malicious code onto a target device, and often, attackers will use a legitimate app store as a vector. Samsung's Android smartphones ship with the Google Play Store, which has hosted its fair...
Read more...
by
Nathan Wasson - Mon, Jan 09, 2023
Cybersecurity researchers at ASEC have uncovered a threat campaign distributing remote access software under the guise of a Pokémon NFT card game. While many threat campaigns distribute Remote Access Trojans (RATs) that operate in the...
Read more...
by
Mark Tyson - Thu, Dec 22, 2022
Corsair has acknowledged the presence of a peculiar bug in its K100 keyboard. Random text string history regurgitation has been causing concern among Corsair K100 users, as they thought it may be evidence of a malfunctioning keylogger...
Read more...
by
Nathan Wasson - Wed, Dec 21, 2022
Earlier this year, researchers from the threat intelligence group Red Canary identified an infectious computer worm that was found to have been present in customers’ environments going back to September 2021. According to later analysis by...
Read more...
by
Paul Lilly - Tue, Dec 20, 2022
Scammers are unfortunately everywhere these days, from gas stations and ATMs (skimmers), to unsolicited phone calls trying to trick less savvy users into coughing up their banking details. You have to keep your head on a swivel in the...
Read more...
by
Nathan Wasson - Mon, Dec 12, 2022
In the course of investigating an Android banking Trojan known as “Ermac,” cybersecurity researchers at ThreatFabric recently discovered a service that takes legitimate apps and turns them into Trojans. The researchers have named this...
Read more...
by
Aaron Leong - Mon, Dec 05, 2022
In the latest detection statistics by Dr. Web antivirus for Android, it found that more than two million users were being bamboozled into installing and using certain apps that were actually backdoors for malware, phishing, and adware...
Read more...
by
Nathan Wasson - Fri, Dec 02, 2022
The cybersecurity firm Zimperium, has published a blog post detailing a recently discovered Android malware campaign that has been ongoing since 2018. This campaign spreads a set of malicious apps the researchers are calling the...
Read more...
by
Nathan Wasson - Fri, Nov 25, 2022
Researchers at the cybersecurity firm ESET have discovered an active Android malware campaign that began in January 2022. The campaign in question distributes spyware injected into legitimate VPN apps. The researchers have tied this...
Read more...
by
Mark Tyson - Thu, Nov 24, 2022
A cyber risk and security analysis company by the name of Cyble has discovered that there are a number of websites distributing a version of MSI Afterburner laced with various strains of malware. Those who accidentally download this widely...
Read more...
by
Nathan Wasson - Wed, Nov 16, 2022
The cybersecurity firm Cyjax has published a new report detailing an ongoing phishing campaign that has made use of over 42,000 domains going back to 2017. The campaign targets WhatsApp users with surveys promising rewards from major...
Read more...
by
Nathan Wasson - Fri, Nov 11, 2022
Google’s Project Zero team, which finds and analyzes zero-day security vulnerabilities, has revealed that an unnamed commercial surveillance company developed spyware that exploited three vulnerabilities specific to Samsung phones equipped...
Read more...
by
Nathan Wasson - Thu, Nov 10, 2022
Researchers at the cybersecurity firm Zimperium have discovered a botnet made up of web browsers infected by malware. The malware in question is known as Cloud9 and takes the form of browser extensions. When installed, these browser...
Read more...
by
Nathan Wasson - Thu, Nov 03, 2022
Threat researchers at the cybersecurity firm Proofpoint have discovered an extensive malware campaign targeting readers of online news outlets. A threat actor tracked as TA569, also known as SocGholish, has managed to compromise the...
Read more...
by
Paul Lilly - Thu, Nov 03, 2022
Security researchers at Malwarebytes Labs have discovered a small handful of malicious Android apps loitering in Google Play, which collectively have racked up over 1 million installations. According to the researchers, each of the four...
Read more...
by
Nathan Wasson - Wed, Nov 02, 2022
A Reddit user looking download and install the free image editor GIMP has discovered a devious malware campaign using contextual Google search ads to trick unsuspecting users into installing the RedLine stealer malware. The user who...
Read more...
by
Nathan Wasson - Fri, Oct 28, 2022
Researchers at the threat analysis company ThreatFabric have published a report detailing some recent evolutions in Android malware droppers on the Google Play Store. Recent changes to Google Play policies restricting access to certain...
Read more...
by
Chris Goetting - Fri, Oct 21, 2022
Security researchers at SafeBreach Labs have discovered a novel PowerShell backdoor which has been able to evade the dozens of malware scanners employed by VirusTotal. The tool’s stealthy qualities have earned it the “fully undetectable,”...
Read more...
by
Ryan Whitwam - Wed, Oct 19, 2022
The conventional wisdom when you think you've picked up some nasty Windows malware is to format the disk and start from scratch, and that's enough to defeat most hacks. However, it won't help with a new piece of malicious code floating...
Read more...
by
Nathan Wasson - Mon, Oct 17, 2022
Researchers at the cybersecurity company Zscaler have discovered a new version of the Ducktail Infostealer in a malware campaign seeking to steal Facebook Business account credentials. Cybersecurity researchers first identified the...
Read more...