More than 40 companies around the world have been compromised by Conti ransomware affiliates in the ARMattack campaign from Nov. 17 to Dec. 20, 2021, making it one of the group's "most productive" hacking campaigns.
Cyberespionage attacks by Chinese hacking operation Bronze Starlight have been disguised in the form of ransomware distribution through the use of the HUI Loader, which has also been leveraged by the China-linked Bronze Riverside threat group.
State-sponsored hacking groups and other threat actors have been exploiting the Log4Shell remote code execution flaw, tracked as CVE-2021-44228, in attacks against VMware servers.
This week, Jason Wood talks: Fancy Bear Nukes, CISA/NSA on PowerShell, and Lots More Crime, as well as all the show Wrap-Ups on the Security Weekly News!
Threat actors operating the ongoing RIG Exploit Kit campaign, which commenced in January, have begun leveraging the Dridex financial trojan, also known as Cridex or Bugat, in place of the Raccoon Stealer malware, according to The Hacker News.
Despite the seemingly reduced prevalence of Magecart attacks, a new, more covert campaign was observed by Malwarebytes to continue being connected to a "pretty wide infrastructure," reports ZDNet.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.