Microsoft announced it will block by default the same extensions as Outlook, Word, Excel, and PowerPoint to defend users against ongoing phishing attacks associated with OneNote.
Malware botnets spread through Cacti, Realtek flaws Numerous malware botnet attacks since January have sought to spread Moobot and ShellBot malware through the exploitation of a critical Cacti command critical injection bug, tracked as CVE-2022-46169, and a critical Realtek Jungle SDK remote code execution flaw, tracked as CVE-2021-35394, BleepingComputer reports.
A threat actor is using AlienFox to harvest API keys and secrets from cloud service providers, including AWS Simple Email Service, Google Workspace and Microsoft Office 365.
In the enterprise security news, early stage startup funding stays constant, but late stage is nowhere to be found. Cisco, XM Cyber, and Mastercard make acquisitions. YouTube channels keep getting hacked. Microsoft fails to use Azure securely. Organizations are making progress on zero trust, but slowly. Finally, more discussion on AI threats, conce...
DBatLoader leveraged for Remcos, Formbook malware deployment Organizations across Europe have been targeted by a novel phishing campaign leveraging the DBatLoader malware loader, also known as NatsoLoader and ModiLoader, to facilitate the distribution of the Remcos RAT and Formbook malware strains, The Hacker News reports.
Threat actors have launched global attacks leveraging malicious Tor browser installers to facilitate the distribution of a clipboard-hijacking malware aimed at exfiltrating cryptocurrency assets, reports BleepingComputer.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.