Italian luxury sports car manufacturer Ferrari has dismissed being impacted by a ransomware attack after the RansomEXX ransomware operation claimed to have stolen 7GB of data from the car maker, reports The Record, a news site by cybersecurity firm Recorded Future.
In the Security News: deep access, dell drivers for the win, detecting deep fakes with acoustic tracking, exchanging 0days, I got 99 embedded firmware security problems, executing in SMM, secure boot to the rescue, automation or a crappy pen test, PHP supply chain attacks, pig butchering, fake profiles, & bribing journalists!
Chinese cyberespionage operation Emperor Dragonfly, also known as Bronze Starlight and DEV-0401, has been behind the new Linux-based ransomware strain Cheerscrypt, reports The Hacker News.
Numerous telecommunications, industrial, healthcare, technology, insurance, and manufacturing organizations in North America and Europe have been targeted in a new supply chain attack leveraging a trojanized version of the Comm100 Live Chat installer by Canadian customer engagement software firm Comm100, according to SecurityWeek.
This week, Dr. Doug talks: Bruce Willis, Deepfake and Deepcake, comm100, cyber month, Chromium, Proxynotshell, fake Proxynotshell, Cobalt Strike, and Jason Wood on the Security Weekly News!
Cobalt Strike beacons are being deployed in a new malware campaign involving fraudulent job-themed lures, which was initially identified in August, reports The Hacker News.
Threat actors behind the campaign, which has a robust command-and-control infrastructure and extensively obfuscated PowerShell stagers, commence the attack with phishing emails sent to their targets' employees, with the messages including a ZIP attachment with a shortcut file that facilitates PowerShell script execution for malware deployment, according to a report from Securonix.
Zscaler ThreatLabz researchers discovered that the Agent Tesla remote access trojan is being spread using Quantum Builder in a new malware campaign involving LNK files, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.