Attacks with an updated and simplified RomCom RAT variant dubbed PEAPOD have been launched by the Void Rabisu threat operation, also known as Storm-0978, UNC2596, and Tropical Scorpius, against female political leaders who participated in the Women Political Leaders Summit in June, according to The Hacker News.
Threat actors have targeted .NET developers with a malicious NuGet package typosquatting the Pathoschild.Stardew.ModBuildConfig deploying the SeroXen RAT, The Hacker News reports.
Asian governments, telcos impacted by ToddyCat-linked attack campaign Asian government entities and telecommunications providers, particularly those in Vietnam, Pakistan, Kazakhstan, and Uzbekistan, have been subjected to an ongoing malware attack campaign linked to Chinese cyberespionage operation ToddyCat since 2021, according to BleepingComputer.
Poorly secured Linux SSH servers have been subjected to attacks with the ShellBot distributed denial-of-service malware that involved the use of IP addresses modified into their hexadecimal form, reports The Hacker News.
This week Dr. Doug talks: Microsoft, SeroxenRAT, Smart Links, Vogons, ToddyCAT, ShellBot, Hidden servers, Aaran Leyland, and More on the Security Weekly News!
New Magecart attacks involving the alteration of default 404 error pages to hide malicious code have been deployed against numerous Magento and WooCommerce sites, including those of food and retail industry entities, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.