Russia-linked Coldriver hackers deploy new espionage malware in targeted attacks
LOSTKEYS is designed to steal sensitive files, harvest system information, and exfiltrate details about running processes.
LOSTKEYS is designed to steal sensitive files, harvest system information, and exfiltrate details about running processes.
The operation primarily focused on undermining NATO support for Ukraine and spreading false narratives to disrupt domestic politics in EU member states.
The suspects are believed to have administered six now-defunct websites, which operated as stresser or booter services.
WhatsApp accused NSO of exploiting a flaw in its audio-calling feature to install spyware on targeted devices.
Attackers are believed to have gained initial access via a publicly exposed Cisco ASA firewall.
The company said that it has observed multiple cases where attackers exploited vulnerable Pinot instances in the wild.
The groups operate through spoofed platforms advertised primarily on social media.
The packages contain code that checks for Linux environments before using wget to download a secondary payload from a remote server.
Researchers believe Panda Shop may be operated by former Smishing Triad members.
Sansec estimates that between 500 and 1000 stores are running backdoored software.
Showing elements 631 - 640