Malware that passes itself off as a WordPress SEO plugin has been infecting sites and opening a backdoor for hackers on thousands of sites.
Lazarus APT Spinoff Linked to Banking Hacks
The Lazarus Group has splintered off a group whose mission is to attack banks and steal money in order to fund its operations.
Security Analyst Summit 2017 Day One Recap
Mike Mimoso and Chris Brook recap the first day of this year’s Security Analyst Summit, including Mark Dowd’s memory corruption bug keynote, the digital archeology around Moonlight Maze, ATM hacking, and the Lazarus APT.
Aviation-Related Phishing Campaigns Seeking Credentials
Researchers warn of a wave in aviation-themed phishing attacks that aim to steal credentials and install malware.
New Mirai Variant Carries Out 54-Hour DDoS Attacks
Researchers are tracking a new variant of the Mirai malware after it launched a 54-hour long DDoS attack against a U.S. college.
Microsoft Offers Analysis of Zero-Day Exploited By Zirconium Group
Microsoft patched a zero-day vulnerability actively used in a campaign by a hacking group known as Zirconium.
Fileless UAC Bypass Uses Windows Backup and Restore Utility
Researcher Matt Nelson disclosed another Windows UAC bypass, this one abusing the sdclt.exe backup and restore utility to execute a payload without triggering an alert.
New Clues Surface on Shamoon 2’s Destructive Behavior
Researchers report new connections between Magic Hound and Shamoon 2, along with descriptions of how the Disttrack malware component of campaigns moves laterally within infected networks.
Experts Doubt Hackers’ Claim Of Millions Of Breached Apple Credentials
Security experts say they are skeptical that a group called Turkish Crime Family actually possess a cache of hundreds of millions of Apple iCloud account credentials.
Adware Apps Booted from Google Play
More than a dozen apps removed from Google Play store after it was determined they were overly aggressive adware.