05/24

Infecting SSH Public Keys with backdoors

https://blog.thc.org/infecting-ssh-public-keys-with-backdoors
Infecting SSH Public Keys with backdoors

Exclusive: Chinese hackers attacked Kenyan government as debt strains grew | Reuters

https://www.reuters.com/world/africa/chinese-hackers-attacked-kenyan-government-debt-strains-grew-2023-05-24/
Exclusive: Chinese hackers attacked Kenyan government as debt strains grew | Reuters

Windows 11 getting native support for 7-Zip, RAR, and GZ archives

https://www.bleepingcomputer.com/news/microsoft/windows-11-getting-native-support-for-7-zip-rar-and-gz-archives/
Windows 11 getting native support for 7-Zip, RAR, and GZ archives

Chinese Malware Hits Systems on Guam. Is Taiwan the Real Target? - The New York Times

https://www.nytimes.com/2023/05/24/us/politics/china-guam-malware-cyber-microsoft.html
Chinese Malware Hits Systems on Guam. Is Taiwan the Real Target? - The New York Times

New PowerExchange malware backdoors Microsoft Exchange servers

https://www.bleepingcomputer.com/news/security/new-powerexchange-malware-backdoors-microsoft-exchange-servers/
New PowerExchange malware backdoors Microsoft Exchange servers

Release v3.20.0 · nccgroup/LoggerPlusPlus · GitHub

https://github.com/nccgroup/LoggerPlusPlus/releases/tag/v3.20.0
Release v3.20.0 · nccgroup/LoggerPlusPlus · GitHub

The "spy whale” is back | The Independent Barents Observer

https://thebarentsobserver.com/en/2023/05/spy-whale-back
The "spy whale” is back | The Independent Barents Observer

BlackCat Ransomware affiliate uses signed kernel driver to evade detectionSecurity Affairs

https://securityaffairs.com/146536/malware/blackcat-ransomware-uses-kernel-driver.html
BlackCat Ransomware affiliate uses signed kernel driver to evade detectionSecurity Affairs

N. Korean Lazarus Group Targets Microsoft IIS Servers to Deploy Espionage Malware

https://thehackernews.com/2023/05/n-korean-lazarus-group-targets.html
N. Korean Lazarus Group Targets Microsoft IIS Servers to Deploy Espionage Malware

Europe's largest known illegal IPTV operation dismantled by police

https://www.hackread.com/europes-largest-illegal-iptv-operation-dismantled/
Europe's largest known illegal IPTV operation dismantled by police

GitLab 'strongly recommends' patching max severity flaw ASAP

https://www.bleepingcomputer.com/news/security/gitlab-strongly-recommends-patching-max-severity-flaw-asap/
GitLab 'strongly recommends' patching max severity flaw ASAP

Free VPN Service SuperVPN Exposes 360 Million User Records

https://www.hackread.com/free-vpn-service-supervpn-leaks-user-records/
Free VPN Service SuperVPN Exposes 360 Million User Records

Iranian Tortoiseshell Hackers Targeting Israeli Logistics Industry

https://thehackernews.com/2023/05/iranian-tortoiseshell-hackers-targeting.html
Iranian Tortoiseshell Hackers Targeting Israeli Logistics Industry

Mikrotik Belatedly Patches RouterOS Flaw Exploited at Pwn2Own - SecurityWeek

https://www.securityweek.com/mikrotik-belatedly-patches-routeros-flaw-exploited-at-pwn2own/
Mikrotik Belatedly Patches RouterOS Flaw Exploited at Pwn2Own - SecurityWeek

Agrius Deploys Moneybird in Targeted Attacks Against Israeli Organizations - Check Point Research

https://research.checkpoint.com/2023/agrius-deploys-moneybird-in-targeted-attacks-against-israeli-organizations/
Agrius Deploys Moneybird in Targeted Attacks Against Israeli Organizations - Check Point Research

Kimsuky | Ongoing Campaign Using Tailored Reconnaissance Toolkit - SentinelOne

https://www.sentinelone.com/labs/kimsuky-ongoing-campaign-using-tailored-reconnaissance-toolkit/
Kimsuky | Ongoing Campaign Using Tailored Reconnaissance Toolkit - SentinelOne

Legion Malware Upgraded to Target SSH Servers and AWS Credentials

https://thehackernews.com/2023/05/legion-malware-upgraded-to-target-ssh.html
Legion Malware Upgraded to Target SSH Servers and AWS Credentials