April 2023

Pakistani Hackers Target Indian Government Agencies With The Linux Malware Poseidon.

Transparent Tribe, an advanced persistent threat (APT) actor based in Pakistan, pretended to be an Indian government organization in order deliver the Poseidon Linux backdoor. Tejaswini Sandapolla, a security researcher at Uptycs, stated that “Poseidon is a second-stage payload malware connected to Transparent Tribe.” in an expert study released last week. It is a general-purpose backdoor that gives attackers a variety of tools to take control of an infected host. Its features include keystroke recording, screen grabs, file uploads and downloads, and different forms of remote system administration. Transparent Tribe has a history of attacking Indian government organizations, military personnel, defense contractors, and educational institutions. It is also known as APT36, Operation C-Major, PROJECTM, and Mythic Leopard. It has also frequently used trojanized versions of Kavach, the 2FA software that the Indian government requires, to spread a range of viruses including CrimsonRAT and LimePad to gather important data. Late last year, another phishing attempt was discovered that used weaponized attachments to download malware intended to steal […]

Pakistani Hackers Target Indian Government Agencies With The Linux Malware Poseidon. Read More »

$4.33 Million Phishing Scam Gang in Ukraine Busted by Cyber Police

The Cyber Police of Ukraine, in collaboration with law enforcement officials from Czechia, has arrested several members of a cybercriminal gang that set up phishing sites to target European users. Two of the apprehended affiliates are believed to be organizers, with 10 others detained in other territories across the European Union. The suspects are alleged

$4.33 Million Phishing Scam Gang in Ukraine Busted by Cyber Police Read More »

WordPress Websites Getting Hacked Through This Plugin

Unknown threat actors are actively exploiting a recently patched security vulnerability in the Elementor Pro website builder plugin for WordPress. The flaw, described as a case of broken access control, impacts versions 3.11.6 and earlier. It was addressed by the plugin maintainers in version 3.11.7 released on March 22. “Improved code security enforcement in WooCommerce

WordPress Websites Getting Hacked Through This Plugin Read More »