WordPress Websites Compromised With Fake DDoS Protection Page
WordPress Websites Compromised With Fake DDoS Protection Page
  • Alert & Advisory
  • August 23, 2022

Threat actors are targeting WordPress-powered websites by injecting a malicious Javascript payload that displays a bogus CloudFare DDoS (Distributed Denial of Service) protection page. Because such DDoS checks have become the norm while browsing the web, unsuspecting internet users will be duped into believing it is genuine, and will be infected with a RAT (Remote Access Trojan) and Information-Stealer as a result.

Cisco Networks hacked by Yanluowang Ransomware Group
Cisco Networks hacked by Yanluowang Ransomware Group
  • Alert & Advisory
  • August 12, 2022

Cisco has reported a security incident on their corporate network. Although, the company has said it did not identify any impact to their business as a result of this incident, including Cisco products or services, sensitive customer data or sensitive employee information, intellectual property, or supply chain operations. However, on August 10 the bad actors published a list of files from this security incident to the dark web.

New HiddenAds Malware on Google Play Store Uncovered
New HiddenAds Malware on Google Play Store Uncovered
  • Alert & Advisory
  • August 8, 2022

A new type of malware has infiltrated the Google Play Store in the form of several device cleaner or optimization apps. The McAfee Mobile Research Team identified this malware as HiddenAds, and upon installation, it can run malicious services without the user opening the app. It also spams the user with irrelevant advertisements. The apps have received downloads ranging from 100,000 to over a million.

Messaging Apps Used To Propagate Information-Stealing Malware
Messaging Apps Used To Propagate Information-Stealing Malware
  • Alert & Advisory
  • August 3, 2022

Naturally, with the proliferation of messaging apps, some will have gained more traction than others. Discord and Telegram, two of the most popular messaging apps, have a burgeoning community that not only exchanges messages but also develops and shares "bots" - programs that automate a variety of tasks within each platform. Threat actors have exploited this and are now using these platforms to spread information-stealing malware.

Luna Ransomware Discovered With Ability To Infect Multiple Platforms
Luna Ransomware Discovered With Ability To Infect Multiple Platforms
  • Alert & Advisory
  • July 28, 2022

Luna, a rust-based ransomware, has been discovered that can run on Windows, Linux, and ESXi operating systems. This exemplifies the ongoing trend of threat actors developing cross-platform ransomware in order to achieve the broadest possible reach.

Related Articles