Cisco says decade-old bug in ASA appliances exploited in the wild
The activity involving CVE-2014-2120 has been linked to the Mozi botnet.
The activity involving CVE-2014-2120 has been linked to the Mozi botnet.
The objective of the attacks is credential theft, enabling Kimsuky to hijack victim accountsю
It is believed that the North Korean state-backed threat actor Lazarus Group was behind the hack.
The campaign exploits vulnerabilities in Microsoft Office.
Rockstar 2FA appears to be an updated version of the DadSec (also known as Phoenix) phishing kit.
CERT-UA attributes the activity to the financially motivated group UAC-0050.
The attackers breached the central bank’s IT systems earlier this month and transferred the funds to various accounts.
Operation Undercut has been active since at least December 2023.
In brief: Critical bug in ProjectSend exploited in the wild, Russian hackers exploit Wi-Fi networks abroad without leaving Russia, and more.
The attackers used discovery-related commands to probe network routers and map the infrastructure.
Showing elements 911 - 920