Threat actors have been spreading the information-stealing malware-as-a-service Erbium as phony video game cracks and cheats in an effort to facilitate credential and cryptocurrency wallet theft, according to BleepingComputer.
Cyberattacks with the novel LOWZERO backdoor malware have been launched by Chinese advanced persistent threat group TA413, also known as LuckyCat, against Tibetan entities, The Hacker News reports.
Russian state-sponsored threat group APT28, also known as Fancy Bear, has been spreading the Graphite malware using a novel code execution approach involving mouse movement in Microsoft PowerPoint files, reports BleepingComputer.
This week, we're joined by Casey Ellis to discuss a Telco breach from a land down under, UK government sits out bug bounty boom but welcomes vulnerability disclosure, Karakurt Data Extortion Group, Microsoft Releases Workaround for ‘One-Click’ 0Day Under Active Attack, being caught with your pants down, & more!
This week Dr. Doug talks: Darth Vader, SmartScreen, Erbium, Graphite, Russia, Metador, Whatsapp, RSocks, and is joined by the illustrious Jason Wood on the Security Weekly News!
Threat actors have been targeting vulnerable Microsoft SQL servers with the FARGO ransomware, also known as Mallox and TargetCompany, according to BleepingComputer.
ReversingLabs researchers discovered that legitimate CSS-based software library Material Tailwind has been impersonated by a malicious NPM package, indicating continued malware distribution efforts in open source software repositories, The Hacker News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.