Researchers Uncover New Infrastructure Tied to FIN7 Cybercrime Group – OfficialSarkar

Researchers Uncover New Infrastructure Tied to FIN7 Cybercrime Group – OfficialSarkar

Aug 19, 2024Ravie LakshmananCybercrime / Network Security Cybersecurity researchers have discovered new infrastructure linked to a financially motivated threat actor known as FIN7. The two clusters of potential FIN7 activity “indicate communications inbound to FIN7 infrastructure from IP addresses assigned to Post Ltd (Russia) and SmartApe (Estonia), respectively,” Team Cymru said in a report published…

OpenAI Blocks Iranian Influence Operation Using ChatGPT for U.S. Election Propaganda – OfficialSarkar

OpenAI Blocks Iranian Influence Operation Using ChatGPT for U.S. Election Propaganda – OfficialSarkar

OpenAI on Friday said it banned a set of accounts linked to what it said was an Iranian covert influence operation that leveraged ChatGPT to generate content that, among other things, focused on the upcoming U.S. presidential election. “This week we identified and took down a cluster of ChatGPT accounts that were generating content for…

Attackers Exploit Public .env Files to Breach Cloud and Social Media Accounts – OfficialSarkar

Attackers Exploit Public .env Files to Breach Cloud and Social Media Accounts – OfficialSarkar

Aug 16, 2024Ravie LakshmananCloud Security / Application Security A large-scale extortion campaign has compromised various organizations by taking advantage of publicly accessible environment variable files (.env) that contain credentials associated with cloud and social media applications. “Multiple security missteps were present in the course of this campaign, including the following: Exposing environment variables, using long-lived…

Russian Hacker Jailed 3+ Years for Selling Stolen Credentials on Dark Web – OfficialSarkar

Russian Hacker Jailed 3+ Years for Selling Stolen Credentials on Dark Web – OfficialSarkar

Aug 16, 2024Ravie LakshmananDark Web / Data Breach A 27-year-old Russian national has been sentenced to over three years in prison for peddling financial information, login credentials, and other personally identifying information (PII) on a now-defunct dark web marketplace called Slilpp. Georgy Kavzharadze, 27, of Moscow, Russia, pleaded guilty to one count of conspiracy to…

Russian Hackers Using Fake Brand Sites to Spread DanaBot and StealC Malware – OfficialSarkar

Russian Hackers Using Fake Brand Sites to Spread DanaBot and StealC Malware – OfficialSarkar

Aug 16, 2024Ravie LakshmananMalware / Data Theft Cybersecurity researchers have shed light on a sophisticated information stealer campaign that impersonates legitimate brands to distribute malware like DanaBot and StealC. The activity cluster, orchestrated by Russian-speaking cybercriminals and collectively codenamed Tusk, is said to encompass several sub-campaigns, leveraging the reputation of the platforms to trick users…

The Hidden Security Gaps in Your SaaS Apps: Are You Doing Due Diligence? – OfficialSarkar

The Hidden Security Gaps in Your SaaS Apps: Are You Doing Due Diligence? – OfficialSarkar

SaaS applications have become indispensable for organizations aiming to enhance productivity and streamline operations. However, the convenience and efficiency these applications offer come with inherent security risks, often leaving hidden gaps that can be exploited. Conducting thorough due diligence on SaaS apps is essential to identify and mitigate these risks, ensuring the protection of your…

Multi-Stage ValleyRAT Targets Chinese Users with Advanced Tactics – OfficialSarkar

Multi-Stage ValleyRAT Targets Chinese Users with Advanced Tactics – OfficialSarkar

Aug 16, 2024Ravie LakshmananCyber Attack / Malware Chinese-speaking users are the target of an ongoing campaign that distributes malware known as ValleyRAT. “ValleyRAT is a multi-stage malware that utilizes diverse techniques to monitor and control its victims and deploy arbitrary plugins to cause further damage,” Fortinet FortiGuard Labs researchers Eduardo Altares and Joie Salvio said….

New Banshee Stealer Targets 100+ Browser Extensions on Apple macOS Systems – OfficialSarkar

New Banshee Stealer Targets 100+ Browser Extensions on Apple macOS Systems – OfficialSarkar

Aug 16, 2024Ravie LakshmananMalware / Browser Security Cybersecurity researchers have uncovered new stealer malware that’s designed to specifically target Apple macOS systems. Dubbed Banshee Stealer, it’s offered for sale in the cybercrime underground for a steep price of $3,000 a month and works across both x86_64 and ARM64 architectures. “Banshee Stealer targets a wide range…

Google Pixel Devices Shipped with Vulnerable App, Leaving Millions at Risk – OfficialSarkar

Google Pixel Devices Shipped with Vulnerable App, Leaving Millions at Risk – OfficialSarkar

Aug 16, 2024Ravie LakshmananMobile Security / Software Security A large percentage of Google’s own Pixel devices shipped globally since September 2017 included dormant software that could be used to stage nefarious attacks and deliver various kinds of malware. The issue manifests in the form of a pre-installed Android app called “Showcase.apk” that comes with excessive…

SolarWinds Releases Patch for Critical Flaw in Web Help Desk Software – OfficialSarkar

SolarWinds Releases Patch for Critical Flaw in Web Help Desk Software – OfficialSarkar

Aug 15, 2024Ravie LakshmananEnterprise Security / Vulnerability SolarWinds has released patches to address a critical security vulnerability in its Web Help Desk software that could be exploited to execute arbitrary code on susceptible instances. The flaw, tracked as CVE-2024-28986 (CVSS score: 9.8), has been described as a deserialization bug. “SolarWinds Web Help Desk was found…