Ticketmaster and other organizations had their Snowflake accounts claimed to be compromised by a ShinyHunters hacker through the breach of software engineering firm EPAM Systems, supporting a Mandiant report linking some of the breaches to third-party contractor hacks, reports Wired.
Hacked legitimate websites have been exploited by threat actors to facilitate novel BadSpace backdoor distribution on Windows machines, The Hacker News reports.
Indian government organizations have been subjected to a cyberespionage campaign by suspected Pakistan-based threat operation UTA0137 that involved the targeting of Linux systems with the DISGOMOJI malware that uses emojis for command-and-control communications via Discord, The Hacker News reports.
Malicious Android apps have been leveraged by suspected Hamas-linked threat operation Arid Viper — also known as APT-C-23, Grey Karkadann, Two-tailed Scorpion, Desert Falcon, and Mantis — to facilitate the deployment of the AridSpy spyware as part of five mobile espionage campaigns, three of which remain active, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.