The Information Highway

The Information Highway

all things technology risk and cybersecurity

Microsoft: Octo Tempest is one of the most dangerous financial hacking groups

oktospider

Microsoft has published a detailed profile of a native English-speaking threat actor with advanced social engineering capabilities it tracks as Octo Tempest, that targets companies in data extortion and ransomware attacks. 

Continue reading
  1091 Hits

Android adware apps on Google Play amass two million installs

Android

Several malicious Google Play Android apps installed over 2 million times push intrusive ads to users while concealing their presence on the infected devices. 

Continue reading
  802 Hits

StripedFly malware framework infects 1 million Windows, Linux hosts

striped-fly

A sophisticated cross-platform malware platform named StripedFly flew under the radar of cybersecurity researchers for five years, infecting over a million Windows and Linux systems during that time. 

Continue reading
  1197 Hits

Cloudflare sees surge in hyper-volumetric HTTP DDoS attacks

ddos-bright

Cloudflare says the number of hyper-volumetric HTTP DDoS (distributed denial of service) attacks recorded in the third quarter of 2023 surpasses every previous year, indicating that the threat landscape has entered a new chapter. 

Continue reading
  887 Hits

New iLeakage attack steals emails, passwords from Apple Safari

apple-cpu

Academic researchers created a new speculative side-channel attack they named iLeakage that works on all recent Apple devices and can extract sensitive information from the Safari web browser. 

Continue reading
  991 Hits

American Family Insurance confirms cyberattack is behind IT outages

amfam-header-v3

Insurance giant American Family Insurance has confirmed it suffered a cyberattack and shut down portions of its IT systems after customers reported website outages all week. 

Continue reading
  865 Hits

Cisco discloses new IOS XE zero-day exploited to deploy malware implant

Cisco

Cisco disclosed a new high-severity zero-day (CVE-2023-20273) today, actively exploited to deploy malicious implants on IOS XE devices compromised using the CVE-2023-20198 zero-day unveiled earlier this week. 

Continue reading
  1125 Hits

Okta says its support system was breached using stolen credentials

Okta

Okta says attackers accessed files containing cookies and session tokens uploaded by customers to its support management system after breaching it using stolen credentials. 

Continue reading
  1103 Hits

Critical RCE flaws found in SolarWinds access audit solution

connector

Security researchers found three critical remote code execution vulnerabilities in the SolarWinds Access Rights Manager (ARM) product that remote attackers could use to run code with SYSTEM privileges. 

Continue reading
  1004 Hits

Fake Corsair job offers on LinkedIn push DarkGate malware

hacker-holding-linkedin

A threat actor is using fake LinkedIn posts and direct messages about a Facebook Ads specialist position at hardware maker Corsair to lure people into downloading info-stealing malware like DarkGate and RedLine. 

Continue reading
  846 Hits

Over 40,000 Cisco IOS XE devices infected with backdoor using zero-day

Cisco-headpic

More than 40,000 Cisco devices running the IOS XE operating system have been compromised after hackers exploited a recently disclosed maximum severity vulnerability tracked as CVE-2023-20198. 

Continue reading
  923 Hits

BlackCat ransomware uses new ‘Munchkin’ Linux VM in stealthy attacks

robot-cat-datacenter

The BlackCat/ALPHV ransomware operation has begun to use a new tool named 'Munchkin' that utilizes virtual machines to deploy encryptors on network devices stealthily. 

Continue reading
  815 Hits

Fake KeePass site uses Google Ads and Punycode to push malware

malware-header

A Google Ads campaign was found pushing a fake KeePass download site that used Punycode to appear as the official domain of the KeePass password manager to distribute malware. 

Continue reading
  1191 Hits

India targets Microsoft, Amazon tech support scammers in nationwide crackdown

Hacker_phone_scam

India's Central Bureau of Investigation (CBI) raided 76 locations in a nationwide crackdown on cybercrime operations behind tech support scams and cryptocurrency fraud. 

Continue reading
  990 Hits

Casio discloses data breach impacting customers in 149 countries

Casio

Japanese electronics manufacturer Casio disclosed a data breach impacting customers from 149 countries after hackers gained to the servers of its ClassPad education platform. 

Continue reading
  868 Hits

Hacker leaks millions of new 23andMe genetic data profiles

23andme-dna-burnin_20231021-202036_1

A hacker has leaked an additional 4.1 million stolen 23andMe genetic data profiles for people in Great Britain and Germany on a hacking forum. 

Continue reading
  896 Hits

MATA malware framework exploits EDR in attacks on defense firms

hacker-looking-at-screens

An updated version of the MATA backdoor framework was spotted in attacks between August 2022 and May 2023, targeting oil and gas firms and the defense industry in Eastern Europe. 

Continue reading
  1053 Hits

Qubitstrike attacks rootkit Jupyter Linux servers to steal credentials

linux-security-headpic

Hackers are scanning for internet-exposed Jupyter Notebooks to breach servers and deploy a cocktail of malware consisting of a Linux rootkit, crypto miners, and password-stealing scripts. 

Continue reading
  883 Hits

DarkGate malware spreads through compromised Skype accounts

Hacker_gate

Between July and September, DarkGate malware attacks have used compromised Skype accounts to infect targets through messages containing VBA loader script attachments. 

Continue reading
  1099 Hits

Apple fixes iOS Kernel zero-day vulnerability on older iPhones

apple_triangle

Apple has published security updates for older iPhones and iPads to backport patches released one week ago, addressing two zero-day vulnerabilities exploited in attacks. 

Continue reading
  929 Hits

Top Breaches Of 2023

Customers Affected In T-Mobile Breach
Accounts Affected In MOVEit Breach
Customers Affected In MCNA Insurance Data Breach
Individuals Affected In PharMerica Data Breach
Users Affected In ChatGPT Major Data Breach
*Founder Shield End of Year 2023