Category Cyber Attacks

UNC1549 Hacks 34 Devices in 11 Telecom Firms via LinkedIn Job Lures and MINIBIKE Malware

A cyber-espionage campaign attributed to Iranian threat actor UNC1549 has compromised 34 devices across 11 telecommunications companies, according to new research from Swiss cybersecurity firm PRODAFT. The group, also tracked as Subtle Snail, used LinkedIn recruitment-themed lures to deliver a custom backdoor called MINIBIKE, bypassing detection through infrastructure proxied via…

Read MoreUNC1549 Hacks 34 Devices in 11 Telecom Firms via LinkedIn Job Lures and MINIBIKE Malware

SilentSync RAT Delivered via Malicious PyPI Packages Targeting Python Developers

Security researchers at Zscaler ThreatLabz have uncovered two malicious packages on the Python Package Index (PyPI) that delivered a Remote Access Trojan named SilentSync to Windows systems. The campaign, attributed to an uploader using the handle CondeTGAPIS, highlights the continuing risk of supply-chain attacks inside the Python ecosystem. Zscaler analysts…

Read MoreSilentSync RAT Delivered via Malicious PyPI Packages Targeting Python Developers

New Docker Malware Variant Blocks Rivals on Exposed APIs

Akamai’s Hunt Team has identified a new strain of malware targeting misconfigured Docker APIs, expanding on a campaign first documented earlier this summer. Unlike earlier versions, which installed cryptocurrency miners, this variant focuses on blocking external access and installing persistence mechanisms, suggesting a larger objective. From Cryptomining to Control The…

Read MoreNew Docker Malware Variant Blocks Rivals on Exposed APIs

MostereRAT Targets Windows Using AnyDesk and TightVNC for Remote Control

Cybersecurity researchers at FortiGuard Labs have discovered a new malware threat called MostereRAT, which is being spread through phishing campaigns targeting Windows devices. Classified as high severity, this Remote Access Trojan (RAT) provides attackers with full control of compromised systems using tools like AnyDesk and TightVNC. How the Malware Works…

Read MoreMostereRAT Targets Windows Using AnyDesk and TightVNC for Remote Control

Amazon Disrupts APT29 Watering Hole Phishing Campaign

Amazon’s threat intelligence team has disrupted a watering hole campaign conducted by APT29, the Russian state-linked threat group also known as Midnight Blizzard. The operation used compromised websites to redirect visitors into a phishing scheme designed to hijack Microsoft accounts through the device code authentication flow. How the Campaign Worked…

Read MoreAmazon Disrupts APT29 Watering Hole Phishing Campaign