The Hacker News reports that advanced threat operations have been leveraging malicious configuration files of the open-source pen-testing tool OpenBullet to facilitate remote access trojan malware attacks against their less sophisticated peers.
Chromium-based web browsers are being targeted by a new more sophisticated version of the Rilide stealer malware, which has been upgraded to enable stolen data and cryptocurrency exfiltration to interval-based screenshot captures or a Telegram channel, according to The Hacker News.
BleepingComputer reports that Microsoft Office executables have been discovered to be living-off-the-land binaries and scripts, which could be leveraged to facilitate malware downloads from a remote server.
Organizations across the U.S. have been urged by the Cybersecurity and Infrastructure Security Agency to strengthen the defenses of their UEFI software amid increasing attacks as evidenced by the emergence of the BlackLotus bootkit malware, according to SecurityWeek.
Midnight Blizzard, Citrix, Bloodhound, Five Eyes, Canon, Cult of the Dead Cow, AI Shopping, Aaran Leyland, and More on this edition of the Security Weekly News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.