Cybersecurity

Category Added in a WPeMatico Campaign

Cybersecurity

Kinsing Hackers Exploit Apache ActiveMQ Vulnerability to Deploy Linux Rootkits

Nov 21, 2023NewsroomLinux / Rootkit The Kinsing threat actors are actively exploiting a critical security flaw in vulnerable Apache ActiveMQ servers to infect Linux systems with cryptocurrency miners and rootkits. “Once Kinsing infects a system, it deploys a cryptocurrency mining script that exploits the host’s resources to mine cryptocurrencies like Bitcoin, resulting in significant damage […]

Cybersecurity

Israeli private eye gets 80-month sentence for global hack-for-hire scheme

An Israeli private investigator was sentenced in the Southern District of New York to nearly seven years in federal prison on Thursday on charges that he orchestrated a global hack-for-hire scheme. Aviram Azari pleaded guilty in April to wire fraud, conspiracy to commit hacking and aggravated identity theft for his role in coordinating hacking campaigns […]

Cybersecurity

Johnson Controls Patches Critical Vulnerability in Industrial Refrigeration Products

Johnson Controls recently announced patches for a critical vulnerability found by an external researcher in some of its industrial refrigeration products. According to advisories published by Johnson Controls and the US cybersecurity agency CISA, the flaw, tracked as CVE-2023-4804, can “allow an unauthorized user to access debug features that were accidentally exposed”. Impacted products include […]

Cybersecurity

US Announces $70 Million Cybersecurity Boost for Rural, Municipal Utilities

The US Department of Energy has announced a $70 million funding opportunity for electric cooperative, small investor-owned, and municipal utilities to improve their cybersecurity posture. Offered as part of President Biden’s Bipartisan Infrastructure Law, the funding is meant to enhance the resilience of the energy grid against more frequent and increasingly sophisticated cyber threats. The […]

Cybersecurity

Konni Campaign Distributed Via Malicious Document | FortiGuard Labs

Affected Platforms: Microsoft WindowsImpacted Users: Microsoft WindowsImpact: Remote attackers gain control of the infected systemsSeverity Level: Critical FortiGuard Labs recently identified the use of a Russian-language Word document equipped with a malicious macro in the ongoing Konni campaign. Despite the document’s creation date of September, ongoing activity on the campaign’s C2 server is evident in […]

Cybersecurity

US Teen Pleads Guilty to Credential Stuffing Attack on Fantasy Sports Website

Wisconsin teenager Joseph Garrison has pleaded guilty to his involvement in a scheme to access user accounts at a fantasy sports and betting website. According to court documents, on November 18, 2022, Garrison launched a credential stuffing attack against the betting site, obtaining access to approximately 60,000 user accounts. The defendant and others then stole […]