New QBot campaign delivered hijacking business correspondence

Kaspersky researchers warn of a new QBot campaign leveraging hijacked business emails to deliver malware. In early April, Kaspersky experts observed a surge in attacks that QBot malware attacks (aka Qakbot, QuackBot, and Pinkslipbot). QBot has been active since 2008, it is used by threat actors for collecting browsing data and banking credentials, and other […]

The post New QBot campaign delivered hijacking business correspondence appeared first on Security Affairs.

April 17, 2023
Read More >>

Vice Society gang is using a custom PowerShell tool for data exfiltration

Vice Society ransomware operators have been spotted using a PowerShell tool to exfiltrate data from compromised networks. Palo Alto Unit 42 team identified observed the Vice Society ransomware gang exfiltrating data from a victim network using a custom-built Microsoft PowerShell (PS) script. Threat actors are using the PowerShell tool to evade software and/or human-based security detection mechanisms. PS scripting […]

The post Vice Society gang is using a custom PowerShell tool for data exfiltration appeared first on Security Affairs.

April 17, 2023
Read More >>

Experts found the first LockBit encryptor that targets macOS systems

Researchers warn that the LockBit ransomware gang has developed encryptors to target macOS devices. The LockBit group is the first ransomware gang of all time that has created encryptors to target macOS systems, MalwareHunterTeam team warn. MalwareHunterTeam researchers discovered the LockBit encryptors in a ZIP archive uploaded to VirusTotal. The discovery is disconcerting and demonstrates […]

The post Experts found the first LockBit encryptor that targets macOS systems appeared first on Security Affairs.

April 16, 2023
Read More >>

NCR was the victim of BlackCat/ALPHV ransomware gang

NCR was the victim of the BlackCat/ALPHV ransomware gang, the attack caused an outage on the company’s Aloha PoS platform. NCR Corporation, previously known as National Cash Register, is an American software, consulting and technology company providing several professional services and electronic products. It manufactures self-service kiosks, point-of-sale terminals, automated teller machines, check processing systems, […]

The post NCR was the victim of BlackCat/ALPHV ransomware gang appeared first on Security Affairs.

April 16, 2023
Read More >>

Remcos RAT campaign targets US accounting and tax return preparation firms

Microsoft warns of a new Remcos RAT campaign targeting US accounting and tax return preparation firms ahead of Tax Day. Ahead of the U.S. Tax Day, Microsoft has observed a new Remcos RAT campaign targeting US accounting and tax return preparation firms. The phishing attacks began in February 2023, the IT giant reported. Remcos is […]

The post Remcos RAT campaign targets US accounting and tax return preparation firms appeared first on Security Affairs.

April 16, 2023
Read More >>

A cyberattack on the Cornwall Community Hospital in Ontario is causing treatment delays

The Cornwall Community Hospital in Ontario, Canada, is under a cyber attack that is causing delays to scheduled and non-urgent care. A cyberattack on the Cornwall Community Hospital in Ontario, Canada, is causing delays to scheduled and non-urgent care. The cyber attack was discovered on Tuesday, April 11, 2023, it is investigating the incident with […]

The post A cyberattack on the Cornwall Community Hospital in Ontario is causing treatment delays appeared first on Security Affairs.

April 15, 2023
Read More >>

From Data Breaches and Spyware, to New Cybersecurity Guidelines…

There’s never a dull day in cybersecurity…Below, we round-up some of top stories that hit the headlines this week! A Rough Day for Colonel Sanders While many of us in the UK hit send on our final work email and tucked away our laptops to enjoy a well-deserved long weekend break, Yum! Brands – owner […]

The post From Data Breaches and Spyware, to New Cybersecurity Guidelines… appeared first on IT Security Guru.

April 14, 2023
Read More >>

Kodi discloses data breach after its forum was compromised

Open-source media player software provider Kodi discloses a data breach after threat actors stole its MyBB forum database. Kodi has disclosed a data breach, threat actors have stolen the company’s MyBB forum database that contained data for over 400K users and private messages. The threat actors also attempted to sell the stolen data on the […]

The post Kodi discloses data breach after its forum was compromised appeared first on Security Affairs.

April 14, 2023
Read More >>

RTM Locker, a new RaaS gains notorieties in the threat landscape

Cybersecurity firm Trellix analyzed the activity of an emerging cybercriminal group called ‘Read The Manual’ RTM Locker. Researchers from cybersecurity firm Trellix have detailed the tactics, techniques, and procedures of an emerging cybercriminal gang called ‘Read The Manual RTM Locker. The group provides a ransomware-as-a-service (RaaS) and provides its malicious code to a network of […]

The post RTM Locker, a new RaaS gains notorieties in the threat landscape appeared first on Security Affairs.

April 14, 2023
Read More >>