The dangers of employees inadvertently downloading dangerous third-party software was again highlighted when an organization ended up running a trojanized cryptocurrency trading application that was installed by a worker.
Sucuri researchers discovered what they described as a massive Wordpress redirecting campaign targeting vulnerable tagDiv themes and Ultimate Member plugins.
A pair of Necurs botnet-fueled phishing campaigns were found targeting the banking industry this month, using Microsoft Publisher (.pub) file attachments to drop the FlawedAmmyy remote access trojan.
MalwareHunterTeam security researchers spotted the ransomware and noted that like its predecessor, the newest variant is communicates a lot with its Command and Control server.
Researchers from Trend Micro have exposed two criminal cyber campaigns targeting South Korean organizations - one, a supply chain attack delivering a remote access tool under the guise of a software update, and two, a ransomware attack leveraging malicious .egg files.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.