Attackers Continue to Leverage Signed Microsoft Drivers

In December of last year, Microsoft worked with SentinelOne, Mandiant, and Sophos to respond to an issue in which drivers certified by Microsoft’s Windows Hardware Developer Program were being used to validate malware. Unfortunately, the problem hasn’t gone away. In a recent Mastodon post, security expert Kevin Beaumont observed, “Microsoft are still digitally signing malware […]

The post Attackers Continue to Leverage Signed Microsoft Drivers appeared first on eSecurityPlanet.

April 22, 2023
Read More >>

3CX Breach Was a Double Supply Chain Compromise

We learned some remarkable new details this week about the recent supply-chain attack on VoIP software provider 3CX, a complex, lengthy intrusion that has the makings of a cyberpunk spy novel: North Korean hackers using legions of fake executive accounts on LinkedIn to lure people into opening malware disguised as a job offer; malware targeting Mac and Linux users working at defense and cryptocurrency firms; and software supply-chain attacks nested within earlier supply chain attacks.

April 21, 2023
Read More >>

Samsung is Rumored to Replace Google with Bing Search

Samsung has been one of Google’s biggest partners over the years. It has constantly been using Google’s operating system and its pre-installed apps like Gmail, YouTube, Google Maps, etc on its devices. However, recent reports rumored that Samsung may reduce its reliance on Google and may consider partnering with Microsoft’s Bing search engine for its […]

The post Samsung is Rumored to Replace Google with Bing Search first appeared on Internet Security Blog – Hackology.

April 20, 2023
Read More >>