New Buhti ransomware operation uses rebranded LockBit and Babuk payloads

The recently identified Buhti operation targets organizations worldwide with rebranded LockBit and Babuk ransomware variants. Researchers from Symantec discovered a new ransomware operation called Buhti (aka Blacktail) that is using LockBit and Babuk variants to target Linux and Windows systems worldwide. The ransomware operation hasn’t its own ransomware payload, however, it uses a custom information […]

The post New Buhti ransomware operation uses rebranded LockBit and Babuk payloads appeared first on Security Affairs.

New PowerExchange Backdoor linked to an Iranian APT group

An alleged Iran-linked APT group targeted an organization linked to the United Arab Emirates (U.A.E.) with the new PowerExchange backdoor. Researchers from the Fortinet FortiGuard Labs observed an attack targeting a government entity in the United Arab Emirates with a new PowerShell-based backdoor dubbed PowerExchange. The experts speculate that the backdoor is likely linked to an […]

The post New PowerExchange Backdoor linked to an Iranian APT group appeared first on Security Affairs.

Gaming Firms and Community Members Hit by Dark Frost Botnet

By Deeba Ahmed
According to researchers, the most prominent targets of Dark Frost include gaming companies, online streaming services, game server hosting providers, and gaming community members.
This is a post from HackRead.com Read the original post…

Mirai Malware Hits Zyxel Devices After Command Injection Bug

By Deeba Ahmed
A variant of the Mirai botnet is targeting Zyxel Firewalls after exploiting a newly patched operating system command injection vulnerability.
This is a post from HackRead.com Read the original post: Mirai Malware Hits Zyxel Devices After…

Dark Frost Botnet targets the gaming sector with powerful DDoS

Researchers spotted a new botnet dubbed Dark Frost that is used to launch distributed denial-of-service (DDoS) attacks against the gaming industry. Researchers from Akamai discovered a new botnet called Dark Frost that was employed in distributed denial-of-service (DDoS) attacks. The botnet borrows code from several popular bot families, including Mirai, Gafgyt, and Qbot. The Dark Frost botnet was […]

The post Dark Frost Botnet targets the gaming sector with powerful DDoS appeared first on Security Affairs.

iRecorder Android App Targeted Its Users With AhRAT Malware

Heads up, Android users! If you ever installed the iRecorder app on your phone, it’s…
iRecorder Android App Targeted Its Users With AhRAT Malware on Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses.

New CosmicEnergy ICS malware threatens energy grid assets

Experts detailed a new piece of malware, named CosmicEnergy, that is linked to Russia and targets industrial control systems (ICS).  Researchers from Mandiant discovered a new malware, named CosmicEnergy, designed to target operational technology (OT) / industrial control system (ICS) systems. The malicious code was first uploaded to a public malware scanning service in December 2021 by […]

The post New CosmicEnergy ICS malware threatens energy grid assets appeared first on Security Affairs.

New Buhti ransomware uses leaked payloads and public exploits

A newly identified ransomware operation has refashioned leaked LockBit and Babuk payloads into Buhti ransomware, to launch attacks on both Windows and Linux systems. Use of public exploits One notable aspect of the attackers leveraging the Buhti ransom…

Microsoft warns of Volt Typhoon, latest salvo in global cyberwar

Microsoft published specifics on the Volt Typhoon state-aligned China actor. Experts say raising awareness of threats is critical.
The post Microsoft warns of Volt Typhoon, latest salvo in global cyberwar appeared first on TechRepublic.