fa
Feedback
TECHZONE™

TECHZONE™

رفتن به کانال در Telegram

TECHZONE CYBERNEWS && UPDATES Wᴇʟᴄᴏᴍᴇ Tᴏ TECHZONE™ ✔️Infosec Facts ✔️Cheatsheets ✔️Free Courses ✔️Open source tools ✔️Tech news

نمایش بیشتر
595
مشترکین
اطلاعاتی وجود ندارد24 ساعت
-17 روز
-1030 روز
آرشیو پست ها
Romania Cancels Presidential Election Results After Alleged Russian Meddling on TikTok https://thehackernews.com/2024/12/romania-cancels-presidential-election.html In a historic decision, Romania's constitutional court has annulled the result of the first round of voting in the presidential election amid allegations of Russian interference. As a result, the second round vote, which was scheduled for December 8, 2024, will no longer take place. Călin Georgescu, who won the first round, denounced the verdict as an "officialized coup" and an attack on

FSB Uses Trojan App to Monitor Russian Programmer Accused of Supporting Ukraine https://thehackernews.com/2024/12/fsb-uses-trojan-app-to-monitor-russian.html A Russian programmer accused of donating money to Ukraine had his Android device secretly implanted with spyware by the Federal Security Service (FSB) after he was detained earlier this year. The findings come as part of a collaborative investigation by First Department and the University of Toronto's Citizen Lab. "The spyware placed on his device allows the operator to track a target device's

Researchers Uncover Flaws in Popular Open-Source Machine Learning Frameworks https://thehackernews.com/2024/12/researchers-uncover-flaws-in-popular.html Cybersecurity researchers have disclosed multiple security flaws impacting open-source machine learning (ML) tools and frameworks such as MLflow, H2O, PyTorch, and MLeap that could pave the way for code execution. The vulnerabilities, discovered by JFrog, are part of a broader collection of 22 security shortcomings the supply chain security company first disclosed last month. Unlike the first

Conquering the Complexities of Modern BCDR https://thehackernews.com/2024/12/conquering-complexities-of-modern-bcdr.html The modern business landscape is thrilling yet daunting. Rapidly evolving technology, persistent cyberthreats and escalating operational complexities make data protection and seamless business continuity challenging for businesses of all sizes. Your organization needs robust security measures that go beyond traditional backup solutions to address the intricacies of today’s complex IT ecosystems.

More_eggs MaaS Expands Operations with RevC2 Backdoor and Venom Loader https://thehackernews.com/2024/12/moreeggs-maas-expands-operations-with.html The threat actors behind the More_eggs malware have been linked to two new malware families, indicating an expansion of its malware-as-a-service (MaaS) operation. This includes a novel information-stealing backdoor called RevC2 and a loader codenamed Venom Loader, both of which are deployed using VenomLNK, a staple tool that serves as an initial access vector for the deployment of follow-on

Hackers Leveraging Cloudflare Tunnels, DNS Fast-Flux to Hide GammaDrop Malware https://thehackernews.com/2024/12/hackers-leveraging-cloudflare-tunnels.html The threat actor known as Gamaredon has been observed leveraging Cloudflare Tunnels as a tactic to conceal its staging infrastructure hosting a malware called GammaDrop. The activity is part of an ongoing spear-phishing campaign targeting Ukrainian entities since at least early 2024 that's designed to drop the Visual Basic Script malware, Recorded Future's Insikt Group said in a new analysis.

This $3,000 Android Trojan Targeting Banks and Cryptocurrency Exchanges https://thehackernews.com/2024/12/this-3000-android-trojan-targeting.html As many as 77 banking institutions, cryptocurrency exchanges, and national organizations have become the target of a newly discovered Android remote access trojan (RAT) called DroidBot. "DroidBot is a modern RAT that combines hidden VNC and overlay attack techniques with spyware-like capabilities, such as keylogging and user interface monitoring," Cleafy researchers Simone Mattia, Alessandro

Critical Mitel MiCollab Flaw Exposes Systems to Unauthorized File and Admin Access https://thehackernews.com/2024/12/critical-mitel-micollab-flaw-exposes.html Cybersecurity researchers have released a proof-of-concept (PoC) exploit that strings together a now-patched critical security flaw impacting Mitel MiCollab with an arbitrary file read zero-day, granting an attacker the ability to access files from susceptible instances. The critical vulnerability in question is CVE-2024-41713 (CVSS score: 9.8), which relates to a case of insufficient input

Europol Shuts Down Manson Market Fraud Marketplace, Seizes 50 Servers https://thehackernews.com/2024/12/europol-shuts-down-manson-market-fraud.html Europol on Thursday announced the shutdown of a clearnet marketplace called Manson Market that facilitated online fraud on a large scale. The operation, led by German authorities, has resulted in the seizure of more than 50 servers associated with the service and the arrest of two suspects. More than 200 terabytes of digital evidence have been collected. Manson Market ("manson-market[.]pw") is

Want to Grow Vulnerability Management into Exposure Management? Start Here! https://thehackernews.com/2024/12/want-to-grow-vulnerability-management.html Vulnerability Management (VM) has long been a cornerstone of organizational cybersecurity. Nearly as old as the discipline of cybersecurity itself, it aims to help organizations identify and address potential security issues before they become serious problems. Yet, in recent years, the limitations of this approach have become increasingly evident.  At its core, Vulnerability Management

Hackers Target Uyghurs and Tibetans with MOONSHINE Exploit and DarkNimbus Backdoor https://thehackernews.com/2024/12/hackers-target-uyghurs-and-tibetans.html A previously undocumented threat activity cluster dubbed Earth Minotaur is leveraging the MOONSHINE exploit kit and an unreported Android-cum-Windows backdoor called DarkNimbus to facilitate long-term surveillance operations targeting Tibetans and Uyghurs. "Earth Minotaur uses MOONSHINE to deliver the DarkNimbus backdoor to Android and Windows devices, targeting WeChat, and possibly making it a

Researchers Uncover 4-Month Cyberattack on U.S. Firm Linked to Chinese Hackers https://thehackernews.com/2024/12/researchers-uncover-4-month-cyberattack.html A suspected Chinese threat actor targeted a large U.S. organization earlier this year as part of a four-month-long intrusion. According to Broadcom-owned Symantec, the first evidence of the malicious activity was detected on April 11, 2024 and continued until August. However, the company doesn't rule out the possibility that the intrusion may have occurred earlier. "The attackers moved laterally

ANEL and NOOPDOOR Backdoors Weaponized in New MirrorFace Campaign Against Japan https://thehackernews.com/2024/12/anel-and-noopdoor-backdoors-weaponized.html The China-linked threat actor known as MirrorFace has been attributed to a new spear-phishing campaign mainly targeting individuals and organizations in Japan since June 2024. The aim of the campaign is to deliver backdoors known as NOOPDOOR (aka HiddenFace) and ANEL (aka UPPERCUT), Trend Micro said in a technical analysis. "An interesting aspect of this campaign is the comeback of a backdoor

NCA Busts Russian Crypto Networks Laundering Funds and Evading Sanctions https://thehackernews.com/2024/12/nca-busts-russian-crypto-networks.html The U.K. National Crime Agency (NCA) on Wednesday announced that it led an international investigation to disrupt Russian money laundering networks that were found to facilitate serious and organized crime across the U.K., the Middle East, Russia, and South America. The effort, codenamed Operation Destabilise, has resulted in the arrest of 84 suspects linked to two Russian-speaking networks

CISA Warns of Active Exploitation of Flaws in Zyxel, ProjectSend, and CyberPanel https://thehackernews.com/2024/12/cisa-warns-of-active-exploitation-of.html The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added multiple security flaws affecting products from Zyxel, North Grid Proself, ProjectSend, and CyberPanel to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows - CVE-2024-51378 (CVSS score: 10.0) - An incorrect default permissions

Russia-Linked Turla Exploits Pakistani Hackers' Servers to Target Afghan and Indian Entities https://thehackernews.com/2024/12/russia-linked-turla-exploits-pakistani.html The Russia-linked advanced persistent threat (APT) group known as Turla has been linked to a previously undocumented campaign that involved infiltrating the command-and-control (C2) servers of a Pakistan-based hacking group named Storm-0156 to conduct its own operations since 2022. The activity, first observed in December 2022, is the latest instance of the nation-state adversary "embedding

Europol Dismantles Criminal Messaging Service MATRIX in Major Global Takedown https://thehackernews.com/2024/12/europol-dismantles-criminal-messaging.html Europol on Tuesday announced the takedown of an invite-only encrypted messaging service called MATRIX that's created by criminals for criminal purposes. The joint operation, conducted by French and Dutch authorities under the moniker Passionflower, comes in the aftermath of an investigation that was launched in 2021 after the messaging service was discovered on the phone of a criminal convicted

7 PAM Best Practices to Secure Hybrid and Multi-Cloud Environments https://thehackernews.com/2024/12/7-pam-best-practices-to-secure-hybrid.html Are you using the cloud or thinking about transitioning? Undoubtedly, multi-cloud and hybrid environments offer numerous benefits for organizations. However, the cloud's flexibility, scalability, and efficiency come with significant risk — an expanded attack surface. The decentralization that comes with utilizing multi-cloud environments can also lead to limited visibility into user activity and

How to Plan a New (and Improved!) Password Policy for Real-World Security Challenges https://thehackernews.com/2024/12/how-to-plan-new-and-improved-password.html Many organizations struggle with password policies that look strong on paper but fail in practice because they're too rigid to follow, too vague to enforce, or disconnected from real security needs. Some are so tedious and complex that employees post passwords on sticky notes under keyboards, monitors, or desk drawers. Others set rules so loose they may as well not exist. And many simply copy

Researchers Uncover Backdoor in Solana's Popular Web3.js npm Library https://thehackernews.com/2024/12/researchers-uncover-backdoor-in-solanas.html Cybersecurity researchers are alerting to a software supply chain attack targeting the popular @solana/web3.js npm library that involved pushing two malicious versions capable of harvesting users' private keys with an aim to drain their cryptocurrency wallets. The attack has been detected in versions 1.95.6 and 1.95.7. Both these versions are no longer available for download from the npm

TECHZONE™ - آمار و تحلیل کانال تلگرام @techzoner