Skip to main content

Security News

Filter by:

Hackers use fake crypto job offers to push info-stealing malware

A campaign operated by Russian threat actors uses fake job offers to target Eastern Europeans working in the cryptocurrency industry, aiming to infect them with a modified version of the Stealerium malware named 'Enigma.' [...]
Bleepingcomputer 10 Feb 2023 1531 Views

NewsPenguin Goes Phishing for Maritime & Military Secrets

A sophisticated cyber-espionage attack against high-value targets attending a maritime technology conference in Pakistan this weekend has been in the works since last year.
Dark Reading 10 Feb 2023 1299 Views

CISA Releases Recovery Script for Victims of ESXiArgs Ransomware

The malware has affected thousands of VMware ESXi hypervisors in the last few days.
Dark Reading 9 Feb 2023 1550 Views

SonicWall warns web content filtering is broken on Windows 11 22H2

Security hardware manufacturer SonicWall warned customers today of what it describes as a "limitation" of the web content filtering (WCF) feature on Windows 11, version 22H2 systems. [...]
Bleepingcomputer 9 Feb 2023 1484 Views

Exploit released for RCE zero-day vulnerability in GoAnywhere MFT

Exploit code has been released for a zero-day remote code execution vulnerability affecting Internet-exposed GoAnywhere MFT administrator consoles. [...]
Bleepingcomputer 7 Feb 2023 7262 Views

Researcher breaches Toyota supplier portal with info on 14,000 partners

Toyota's Global Supplier Preparation Information Management System (GSPIMS) was breached by a security researcher who responsibly reported the issue to the company. [...]
Bleepingcomputer 7 Feb 2023 1466 Views

VMware Finds No Evidence of 0-Day in Ongoing ESXiArgs Ransomware Spree

VMware on Monday said it found no evidence that threat actors are leveraging an unknown security flaw, i.e., a zero-day, in its software as part of an ongoing ransomware attack spree worldwide. "Most reports state that End of General Support...
The Hacker News 7 Feb 2023 1490 Views

VMware warns admins to patch ESXi servers, disable OpenSLP service

VMware warned customers today to install the latest security updates and disable the OpenSLP service targeted in a large-scale campaign of ransomware attacks against Internet-exposed and vulnerable ESXi servers. [...]
Bleepingcomputer 7 Feb 2023 1723 Views

Bermuda hit by major internet and power outage

Bermuda experienced a widespread power outage on Friday which impacted the island's internet and phone services. Calling it a "serious incident" at BELCO, the Bermudian power supplier, the government has advised customers to "unplug all sensitive electrical equipment" as crews work...
Bleepingcomputer 4 Feb 2023 1148 Views

New Wave of Ransomware Attacks Exploiting VMware Bug to Target ESXi Servers

VMware ESXi hypervisors are the target of a new wave of attacks designed to deploy ransomware on compromised systems. "These attack campaigns appear to exploit CVE-2021-21974, for which a patch has been available since February 23, 2021," the Computer Emergency Response Team...
The Hacker News 4 Feb 2023 1569 Views