May 2024

Hackers Exploit GitHub and FileZilla to Deliver Malware Cocktail

A “multi-faceted campaign” has been observed that uses reputable services such as GitHub and FileZilla to propagate a variety of banking trojans and stealer malware, including Vidar, Atomic (also known as AMOS), Lumma (also known as LummaC2), and Octo, by posing as reliable programmes such as 1Password, Bartender 5, and Pixelmator Pro. “The presence of

Hackers Exploit GitHub and FileZilla to Deliver Malware Cocktail Read More »

Russian Hacker Dmitry Khoroshev Unmasked as LockBit Ransomware Administrator

Dmitry Yuryevich Khoroshev, a 31-year-old Russian national, is the administrator and creator of the LockBit ransomware campaign, according to the U.K. National Crime Agency (NCA). The Australian Department of Foreign Affairs, the U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC), and the Foreign, Commonwealth and Development Office (FCD) of the United Kingdom

Russian Hacker Dmitry Khoroshev Unmasked as LockBit Ransomware Administrator Read More »

Malicious Android Apps Pose as Google, Instagram, WhatsApp to Steal Credentials

It has been noted that malicious Android apps that pose as Google, Instagram, Snapchat, WhatsApp, and X (previously Twitter) can steal user credentials from devices that have been hijacked. In a recent analysis, the threat research team at SonicWall Capture Labs stated that “this malware uses famous Android app icons to mislead users and trick

Malicious Android Apps Pose as Google, Instagram, WhatsApp to Steal Credentials Read More »

Ex-NSA Employee Sentenced to 22 Years for Trying to Sell U.S. Secrets to Russia

A former National Security Agency (NSA) employee in the United States was given a sentence of nearly 22 years (262 months) in jail for trying to send confidential documents to Russia. “This sentence should serve as a stark warning to all those entrusted with protecting national defense information that there are consequences to betraying that

Ex-NSA Employee Sentenced to 22 Years for Trying to Sell U.S. Secrets to Russia Read More »

Android Virus Wpeeper Uses Compromised WordPress Sites to Hide C2 Servers

Researchers studying cybersecurity have uncovered a yet unreported malware that targets Android smartphones and evades detection by using hacked WordPress websites as relays for its real command-and-control (C2) servers. Code-named Wpeeper, the malware is an ELF binary that uses HTTPS to encrypt its C2 communications. “Wpeeper is a typical backdoor Trojan for Android systems, supporting

Android Virus Wpeeper Uses Compromised WordPress Sites to Hide C2 Servers Read More »