Novel detection evasion techniques have been employed by the Emotet malware-as-a-service operation, which has been attributed to the TA542 cybercrime group, also known as Mummy Spider or Crestwood, in its resurgence following being taken down in early 2021, according to The Hacker News.
U.S. video game developer Riot Games has emphasized that it will not be providing the $10 million ransom demanded by threat actors behind a data breach last week that resulted in the theft of League of Legends source code, according to BleepingComputer.
This week in the Security News: GetVariable strikes again, attackers could blow up your computer remotely, escaping containers, null-dereferences and faulty evaluations, 31 new CPU vulnerabilities for AMD, a look into Chrome, santa, not-so-secure secure booting, and malware included!
Widespread malvertising campaign VASTFLUX, which involved the impersonation of more than 1,700 apps and impacted nearly 11 million devices, has been taken down by fraud prevention company HUMAN, The Hacker News reports.
An unidentified group is using legitimate and malicious tools created by Chinese-speaking developers to target internet-connected servers in East Asia, according to Sentinel One.
This Week Dr. Doug talks: Chick-Fil-A, OneNote, XLLs, VastFlux, Tmobile, ChatGPT, Ukraine, Microsoft, Jason Wood, and More on the Security Weekly News.
BleepingComputer reports that Microsoft OneNote attachments are being leveraged in phishing emails aimed at deploying remote access trojans for secondary malware deployment, as well as password and cryptocurrency theft.
Ukraine's military and law enforcement sectors are being attacked by Russian state-backed cyberespionage operation Gamaredon with the use of the Telegram messaging app, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.