Cybersecurity

Russian APT28 Hackers Targeting High-Value Orgs with NTLM Relay Attacks

Russian state-sponsored actors have staged NT LAN Manager (NTLM) v2 hash relay attacks through various methods from April 2022 to November 2023, targeting high-value targets worldwide. The attacks, attributed to an “aggressive” hacking crew called APT28, have set their eyes on organizations dealing with foreign affairs, energy, defense, and transportation, as well as those involved […]

Cybersecurity

DirtyMoe Malware Infects 2,000+ Ukrainian Computers for DDoS and Cryptojacking

Feb 02, 2024NewsroomCryptojacking / Malware The Computer Emergency Response Team of Ukraine (CERT-UA) has warned that more than 2,000 computers in the country have been infected by a strain of malware called DirtyMoe. The agency attributed the campaign to a threat actor it calls UAC-0027. DirtyMoe, active since at least 2016, is capable of carrying […]

Cybersecurity

ApateWeb: Large-Scale Campaign Delivers Scareware and PUPs | Cyware Hacker News

The cybersecurity landscape has witnessed a new, sophisticated threat in the form of ApateWeb, a large-scale scareware and Potentially Unwanted Programs (PUPs) delivery campaign. Uncovered by Unit 42 researchers at Palo Alto Networks, the campaign is notable for its use of over 130,000 domains to propagate various forms of malicious content. Diving into Details ApateWeb […]

Cybersecurity

Crime bosses behind Myanmar cyber ‘fraud dens’ handed over to Chinese government

Myanmar authorities handed over to the Chinese government 10 suspects accused of involvement in the organized cyber fraud industry, including the heads of three prominent crime families. The arrests come after China’s Ministry of Public Security released a wanted list in December for the members of the “family crime syndicates,” which have ties to Myanmar’s […]

Cybersecurity

Exposed Docker APIs Under Attack in ‘Commando Cat’ Cryptojacking Campaign

Feb 01, 2024NewsroomCryptojacking / Linux Security Exposed Docker API endpoints over the internet are under assault from a sophisticated cryptojacking campaign called Commando Cat. “The campaign deploys a benign container generated using the Commando project,” Cado security researchers Nate Bill and Matt Muir said in a new report published today. “The attacker escapes this container […]