Fraudulent Binance non-fungible token mystery box bots are being promoted on YouTube as part of a new campaign aimed at distributing the RedLine malware, BleepingComputer reports.
Threat actors have created a fake version of the Pixelmon non-fungible token website under pixelmon[.]pw, which then spreads that Vidar malware with cryptocurrency wallet-exfiltrating capabilities, according to BleepingComputer.
Iranian advanced persistent threat group OilRig, also known as Cobalt Gypsy, Helix Kitten, and APT34, has attacked a Jordanian diplomat with a malicious Excel document deploying the new Saitama backdoor, reports SecurityWeek.
This week’s breach roundup contains updates on two cyberattack-related network outages from September, as well as a massive data theft reported by community-based provider RefuahHealth.
Iranian cyberespionage group Charming Kitten also known as APT35, TA453, Cobalt Mirage, Phosphorus, NewsBeef, Magic Hound, and Newscaster has been launching financially-motivated attacks against U.S. entities in the last few months, according to SecurityWeek.
Bills aimed at bolstering statewide cybersecurity have been signed into law by Gov. Larry Hogan amid increasingly prevalent cyberattacks, the Associated Press reports.
Nearly 7,000 WordPress websites have been compromised in a widespread campaign that involved malicious JavaScript code injection that redirects site visitors to malicious websites, reports The Hacker News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.