SiliconAngle reports that Amazon Web Services' System Manager Agent for DevOps could be exploited as an integrated remote access trojan for Windows and Linux systems through a novel post-exploitation attack, which facilitates communications between an endpoint agent and an attacker-owned AWS account.
Cybersecurity researchers reported discovering a previously unknown phishing campaign distributing two variants of an infostealer written in Python to take over Facebook business accounts.
Malware security threats against operational technology and Internet of Things environments rose by 20-fold during the past six months, according to SiliconAngle.
Italian organizations have been targeted by the TA544 and TA551 threat operations in phishing campaigns deploying the novel sophisticated downloader malware WikiLoader since December, reports The Record, a news site by cybersecurity firm Recorded Future.
TechCrunch reports that worm malware attacks exploiting a five-year-old vulnerability have been targeted at Call of Duty: Modern Warfare 2 players for nearly a month.
Attacks with the P2Pinfect botnet malware have been targeted at Redis servers, with the payload not only leveraging various Redis exploits for initial access but also using Rust for further development, reports SiliconAngle.
IcedID malware beefs up capabilities IcedID malware, also known as BokBot, had its attack infrastructure enhanced with updates to its BackConnect module for post-compromise activities, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.