ALERT

ACTIVE THREATS: ADT confirms data breach after ShinyHunters leak threat  •  CISA Adds Four Known Exploited Vulnerabilities to Catalog  •  New Pack2TheRoot flaw gives hackers root Linux access  •  New BlackFile extortion group linked to surge of vishing attacks  •  In Other News: Unauthorized Mythos Access, Plankey CISA Nomination Ends, New Display Security Device      ACTIVE THREATS: ADT confirms data breach after ShinyHunters leak threat  •  CISA Adds Four Known Exploited Vulnerabilities to Catalog  •  New Pack2TheRoot flaw gives hackers root Linux access  •  New BlackFile extortion group linked to surge of vishing attacks  •  In Other News: Unauthorized Mythos Access, Plankey CISA Nomination Ends, New Display Security Device

🟣Malware70 stories

Malware

Latest cybersecurity malware news, analysis, and intelligence.

🟣MalwareMEDIUM

Enterprise Alert: Storm-2561 Deploys Trojan VPNs via SEO Poisoning to Harvest Credentials

Microsoft has uncovered a sophisticated credential theft campaign, dubbed Storm-2561, which leverages SEO poisoning to trick users into downloading malicious, digitally signed VPN clients. These deceptive applications, masquerading as legitimate enterprise software, are designed to pilfer sensitive user credentials, posing a significant threat to organizational security and data integrity.

via The Hacker News·