Zephyrnet Logo

Tag: iocs

WordPress Supply Chain Attack Spreads Across Multiple Plug-Ins

A threat actor or actors has compromised multiple plug-ins on the WordPress.org site with code aimed at giving attackers administrative privileges as well as...

Top News

Patch Now: Critical Fortinet RCE Bug Under Active Attack

As expected, cyberattackers have pounced on a critical remote code execution (RCE) vulnerability in the Fortinet Enterprise Management Server (EMS) that was patched last...

Russian APT Turla Wields Novel Backdoor Malware Against Polish NGOs

Russia-sponsored advanced persistent threat group (APT) Turla is now targeting Polish NGOs in a cyberespionage campaign that uses a freshly developed backdoor with modular...

Ivanti Zero-Day Patches Delayed as ‘KrustyLoader’ Attacks Mount

Attackers are using a pair of critical zero-day vulnerabilities in Ivanti VPNs to deploy a Rust-based set of backdoors, which in turn download a...

ESET takes part in global operation to disrupt the Grandoreiro banking trojan

ESET has collaborated with the Federal Police of Brazil in an attempt to disrupt the Grandoreiro botnet. ESET contributed to the project by providing...

Update – IAV 2024: UK plans more Boxer variants

24 January 2024 ...

Beware of predatory fin(tech): Loan sharks use Android apps to reach new depths

Since the beginning of 2023, ESET researchers have observed an alarming growth of deceptive Android loan apps, which present themselves as legitimate personal loan...

Telekopye: Chamber of Neanderthals’ secrets

We recently published a blogpost about Telekopye, a Telegram bot that helps cybercriminals scam people in online marketplaces. Telekopye can craft phishing websites, emails,...

Cyber threat intelligence: Getting on the front foot against adversaries

Business Security By collecting, analyzing and contextualizing information about possible cyberthreats, including the most advanced ones, threat intelligence offers a critical method to...

MOVEit Hackers Pivot to SysAid Zero-Day in Ransomware Attacks

Move over MOVEit, there's a new zero-day being exploited to deploy Clop ransomware into enterprise networks. This time, the same threat actors were caught...

Unlucky Kamran: Android malware spying on Urdu-speaking residents of Gilgit-Baltistan

ESET researchers have identified what appears to be a watering-hole attack on a regional news website that delivers news about Gilgit-Baltistan, a disputed region...

Who killed Mozi? Finally putting the IoT zombie botnet in its grave

ESET Research How ESET Research found a kill switch that had been used to take down one of the most prolific botnets out...

Winter Vivern exploits zero-day vulnerability in Roundcube Webmail servers

ESET Research ESET Research recommends updating Roundcube Webmail to the latest available version as soon as possible Matthieu Faou 25 Oct 2023...

Latest Intelligence

spot_img
spot_img