June 15, 2022
MSDT "Follina" vulnerability exploited in attacks against U.S., European governments
An unpatched remote code execution vulnerability in the Microsoft Windows Support Diagnostic Tool (MSDT), which is being tracked as CVE-2022-30192, is being exploited in phishing campaigns that are targeting U.S. and European government organizations.
June 14, 2022
Vice Society ransomware hits Italian city of Palermo
Palermo, a city of 1.3 million people and a popular tourist destination in Southern Italy, has become the latest victim of a Vice Society ransomware attack.
June 08, 2022
Austrian state of Carinthia hit by BlackCat ransomware
Carinthia, the southernmost state in Austria, has had their computer systems encrypted by BlackCat (ALPHV) ransomware, causing a severe disruption of government services.
May 31, 2022
Snake keylogger spreads through malicious PDFs
A new malware distribution campaign is embedding malicious Microsoft Word documents inside PDF files, prompting victims to launch the Word document as soon as the PDF is opened.
May 11, 2022
Agriculture equipment manufacturer AGCO hit by ransomware
Global agricultural equipment company AGCO, creator of Fendt tractors and other popular tools, has been knocked offline by a ransomware attack.
May 10, 2022
Twitter phishing scams target verified accounts
Recent phishing campaigns are targeting verified Twitter profiles with convincing emails, enticing victims to provide their Twitter credentials — supposedly in order to fix a problem with their verification badge.
April 30, 2022
New ransomware gang "Black Basta" emerges
A new ransomware known as Black Basta has emerged, attacking at least 12 companies within its first three weeks of operation — including the American Dental Association and wind farm operator Deutsche Windtechnik.
April 22, 2022
HermeticWiper and HermeticRansom delivered via Active Directory GPO
On February 23, 2022, a new data wiper and ransomware were deployed on a large number of devices in the Ukraine, as ESET Research reported on Twitter. Just before this, a couple of Ukrainian government sites and services were subjected to DDoS attacks. Cybersecurity specialists discovered that the malware was deployed via Microsoft Active Directory GPO.
In addition to the disk wiper and ransomware, a worm component was deploy
April 21, 2022
Nordex Group struck by Conti ransomware
The Nordex Group, known as one of the world's largest manufacturers of wind turbines, has confirmed a cyberattack. The attack was discovered end of last month, and Nordex disabled remote access from some networks to their turbines as a precaution.
April 08, 2022
WhatsApp phishing campaign uses fake voice messages
A new phishing campaign, which uses fake WhatsApp voice messages to trick victims into installing infostealing malware, has already targeted over 27,000 users.
April 08, 2022
New RAT "Borat" is a triple threat
A new remote access Trojan (RAT) by the name of Borat has been appearing on darknet markets. Borat is designed to be easy-to-use, and gives attackers the ability to deploy ransomware, perform DDoS attacks, bypass user account control (UAC), access files and network devices, and even take complete control of a victim's mouse and keyboard.
March 30, 2022
Urgent update issued for Google Chrome
Google has issued an update for its Chrome browser that patches the second "high severity" zero-day vulnerability this year. All 3.2 billion Chrome users are urged to update to Chrome 99.0.4844.84 for Windows, Mac, or Linux immediately.