Vulnerable Oracle WebLogic servers impacted by the CVE-2017-3506 flaw, which could be exploited for arbitrary command execution, are being targeted by the cryptojacking operation 8220 Gang to facilitate cryptomining malware distribution, according to The Hacker News.
CNBC reports that the increasingly popular e-commerce app Temu has been accused by the U.S. government of having data security risks following the removal of its Chinese sister app Pinduoduo from the Google Play Store due to the presence of malware, which exploited Android security flaws.
Financially motivated threat operation Water Orthus, which was behind the CopperStealer malware, has reemerged with new attacks deploying the novel CopperStealth and CopperPhish payloads, reports The Hacker News.
Emerging information-stealing malware families examined Information-stealing operations unveiled over the past 12 months have been gaining traction amid the continued dominance of the Raccoon, RedLine, and Vidar info stealers, according to BleepingComputer.
In the security news: How AI Knows Things No One Told It, Dragos Employee Gets Hacked, VMProtect Source Code Leaks, CISA Vulnerabilities, SHA-1 is a Shambles, Microsoft Scans Inside Password Protected Files, Geacon Brings Cobalt Strike Compatability to MacOS, Google Launches Tools to Identify Misleading & AI Images, Cyberstalkers Use New Windows Fe...
New BPFDoor malware variant adds stealth Operators of the BPFDoor malware have updated the Linux backdoor to leverage static library encryption and reverse shell communication in a bid to better evade detection by antivirus systems, according to BleepingComputer.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.