Cybercriminals Abusing Cloudflare R2 for Hosting Phishing Pages, Experts Warn
Threat actors’ use of Cloudflare R2 to host phishing pages has witnessed a 61-fold increase over the past six months. « The majority of the phishing campaigns target Microsoft login credentials, although there are some pages targeting Adobe, Dropbox, and other cloud apps, » Netskope security researcher Jan Michael said. Cloudflare R2, analogous to Amazon Web Service S3, […]
Multiple Flaws Found in ScrutisWeb Software Exposes ATMs to Remote Hacking
Four security vulnerabilities in the ScrutisWeb ATM fleet monitoring software made by Iagona could be exploited to remotely break into ATMs, upload arbitrary files, and even reboot the terminals. The shortcomings were discovered by the Synack Red Team (SRT) following a client engagement. The issues have been addressed in ScrutisWeb version 2.1.38. « Successful exploitation of these
Monti Ransomware Returns with New Linux Variant and Enhanced Evasion Tactics
The threat actors behind the Monti ransomware have resurfaced after a two-month break with a new Linux version of the encryptor in its attacks targeting government and legal sectors. Monti emerged in June 2022, weeks after the Conti ransomware group shut down its operations, deliberately imitating the tactics and tools associated with the latter, including its leaked […]
SetApp va ouvrir un magasin d’apps alternatif pour l’iPhone et l’iPad en 2024 !
En application de la loi sur les marchés numériques (DMA), Setapp prévoit de donner à ses utilisateurs européen un nouveau moyen de télécharger des applications sur iPhone et iPad.
Gigabud RAT Android Banking Malware Targets Institutions Across Countries
Account holders of over numerous financial institutions in Thailand, Indonesia, Vietnam, the Philippines, and Peru are being targeted by an Android banking malware called Gigabud RAT. « One of Gigabud RAT’s unique features is that it doesn’t execute any malicious actions until the user is authorized into the malicious application by a fraudster, […] which makes it […]
Over 120,000 Computers Compromised by Info Stealers Linked to Users of Cybercrime Forums
A « staggering » 120,000 computers infected by stealer malware have credentials associated with cybercrime forums, many of them belonging to malicious actors. The findings come from Hudson Rock, which analyzed data collected from computers compromised between 2018 to 2023. « Hackers around the world infect computers opportunistically by promoting results for fake software or through YouTube
Catching the Catphish: Join the Expert Webinar on Combating Credential Phishing
Is your organization constantly under threat from credential phishing? Even with comprehensive security awareness training, many employees still fall victim to credential phishing scams. The result? Cybercriminals gaining immediate and unhindered access to sensitive data, email accounts, and other applications. But what if you could outsmart these criminals and protect your organization? Join
North Korean Hackers Suspected in New Wave of Malicious npm Packages
The npm package registry has emerged as the target of yet another highly targeted attack campaign that aims to entice developers into downloading malevolent modules. Software supply chain security firm Phylum told The Hacker News the activity exhibits similar behaviors to that of a previous attack wave uncovered in June, which has since been linked to North […]
Quelles nouveautés Santé pourrait inclure l’Apple Watch ?
Apple cherche continuellement à améliorer son Apple Watch, et, même si elle observe la plus grande discrétion sur ses travaux en cours, elle se doit de les sécuriser de temps à temps. A cette occasion, l’USPTO -le registre des brevets et des marques américaines- se transforme en une source d’informations des plus intéressantes.
Les dangers des parcs nationaux américains : pourquoi l’iPhone 14 devient indispensable
Une fonctionnalité se démarquait néanmoins de son prédécesseur, et fait régulièrement la une des médias américain : il s’agit de la captation satellite, qui permet d’envoyer un message d’urgence en l’absence de réseau.