The latest variant of the RapperBot botnet adds cryptojacking capabilities

FortiGuard Labs Researchers spotted new samples of the RapperBot botnet that support cryptojacking capabilities. FortiGuard Labs researchers have discovered new samples of the RapperBot bot that added cryptojacking capabilities. Researchers from FortiGuard Labs first discovered the previously undetected RapperBot IoT botnet in August, and reported that it is active since mid-June 2022. The bot borrows […]

The post The latest variant of the RapperBot botnet adds cryptojacking capabilities appeared first on Security Affairs.

FluHorse Malware Targets Android Users By Mimicking Legit Apps

Researchers have warned Android users of a new malware that steals two-factor authentication (2FA) codes…
FluHorse Malware Targets Android Users By Mimicking Legit Apps on Latest Hacking News | Cyber Security News, Hacking Tools and Penetration T…

Security Affairs newsletter Round 419 by Pierluigi Paganini – International edition

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free for you in your email box. We are in the final! Please vote for Security Affairs (https://securityaffairs.com/) as the best European Cybersecurity Blogger Awards 2022 – VOTE FOR YOUR WINNERSVote for me in the sections […]

The post Security Affairs newsletter Round 419 by Pierluigi Paganini – International edition appeared first on Security Affairs.

Researchers warn of new malware stealing 2FA authentication codes

Cybersecurity researchers have issued a warning to Android users about new malware. The malware in question steals two-factor authentication (2FA) codes for a wide range of applications. The malware in question is known as FluHorse, and it has the abil…

Russia-affiliated CheckMate ransomware quietly targets popular file-sharing protocol

The CheckMate ransomware operators have been targeting the Server Message Block (SMB) communication protocol used for file sharing to compromise their victims’ networks. Unlike most ransom campaigns, CheckMate, discovered in 2022, has been quiet throughout its operations. To the best of our knowledge, it doesn’t operate a data leak site. That’s quite unusual for a […]

The post Russia-affiliated CheckMate ransomware quietly targets popular file-sharing protocol appeared first on Security Affairs.

Bl00dy Ransomware Gang actively targets the education sector exploiting PaperCut RCE

U.S. CISA and FBI warned of attacks conducted by the Bl00dy Ransomware Gang against the education sector in the country. The FBI and CISA issued a joint advisory warning that the Bl00dy Ransomware group is actively targeting the education sector by exploiting the PaperCut remote-code execution vulnerability CVE-2023-27350. The Bl00dy ransomware has been active since May 2022, […]

The post Bl00dy Ransomware Gang actively targets the education sector exploiting PaperCut RCE appeared first on Security Affairs.

Leaked source code of Babuk ransomware used by 10 different ransomware families targeting VMware ESXi

The leak of the source code of the Babuk ransomware allowed 9 ransomware gangs to create their own ransomware targeting VMware ESXi systems. SentinelLabs researchers have identified 10 ransomware families using VMware ESXi lockers based on the source code of the Babuk ransomware that was leaked in 2021. The experts pointed out that these ransomware […]

The post Leaked source code of Babuk ransomware used by 10 different ransomware families targeting VMware ESXi appeared first on Security Affairs.

Millions of Android Phones Comes Pre-Infected with Malware Firmware

Researchers from Trend Micro at Black Hat Asia claim that criminals have pre-infected millions of Android devices with malicious firmware before the devices ever leave their manufacturing. The manufacturing of the gadgets is outsourced to an original e…