BleepingComputer reports that Russian hacking operation Sandworm is being tied by the Computer Emergency Response Team of Ukraine to a significant CaddyWiper malware attack against Ukraine's national news agency Ukrinform.
Threat actors could exploit the port forwarding feature in cloud-based configurable development environment GitHub Codespaces to facilitate malware delivery, according to The Hacker News.
BleepingComputer reports that three malicious packages have been uploaded by Lolip0p on the Python Package Index to spread information stealing malware.
Qihoo Netlab 360 researchers have discovered the active distribution of a novel backdoor based on the Central Intelligence Agency's Hive multi-platform malware suite, according to The Hacker News.
Threat actors have been actively exploiting an already addressed critical vulnerability impacting the Cacti device monitoring tool, tracked as CVE-2022-46169, to deliver the Mirai malware and PERL-based IRC botnet that resulted in the opening of a host-based reverse shell, according to BleepingComputer.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.