Noticias, Consejos, Laboratorio de seguridad

Critical Boot Loader Vulnerability in Shim Puts Linux Systems in Danger

Shim Bootloader Vulnerability Affects Linux Systems

Los investigadores han identificado una vulnerabilidad crítica en Shim, un gestor de arranque de Linux ampliamente utilizado. This vulnerability could potentially allow attackers to execute

Ov3r_Stealer Steals Crypto and Credentials, Exploits Facebook Job Ads

A new Windows malware called Ov3r_Stealer is spreading through fake Facebook job ads, according to a report by Trustwave SpiderLabs.

Third Ivanti VPN Vulnerability Under Massive Exploitation

Los expertos han descubierto una tercera falsificación de solicitudes del lado del servidor (SSRF) vulnerabilidad en los productos Ivanti. This is a serious security issue

Tax Season Scams On The Rise, Beware!

Tax season has already begun, y también lo hicieron las estafas de la temporada de impuestos. The IRS annually lists its top tax scams to

Docker API Vulnerability Exploited in Cryptojacking Campaign

Una nueva campaña llamada «Gato comando» uses a Docker API vulnerability. It uses Docker to gain initial access to a

NortonLifeLock Hacked Via MOVEit Vulnerability

NortonLifeLock Hacked by Cl0P Gang, Using MOVEit Vulnerability

NortonLifeLock, el desarrollador de software antivirus de fama mundial, had reportedly been hacked

Shuckworm attacks Ukrainian companies

Shuckworm Gang Attacks Ukrainian Companies Using Pterodo Backdoor and USB Drives

Los expertos de Symantec informan que el grupo de hackers Shuckworm (también conocido como Armagedón,…

Cloud Mining Scams Spread Roamer, the Android banking trojan

Cloud Mining Scams Spread Banking Trojans

It’s no secret that cybercriminals are increasingly using mobile platforms

Russian-speaking Enlisted players

WannaCry 3.0 Ransomware Aims At Enlisted Russian-speaking Players

Una carga útil de ransomware previamente desconocida, que se hace llamar WannaCry…

Fake security company is spreading malware through GitHub

Malware in GitHub Repositories Is Spread From Fake Security Company Name

Researchers detected fake company accounts on GitHub linked to a

BreachForums Back Online, Revived by ShinyHunters

BreachForums Is Back Online, Led by ShinyHunters

IncumplimientoForos, an infamous Darknet forum that was shut down in

new vulnerabilities in MOVEit Transfer

New critical vulnerabilities found in MOVEit Transfer

It became known that during the audit in the solution

RDP Honeypot Counted for 3.5 Million Attacks

RDP Honeypot Was Attacked 3.5 Million Times

Con mayor trabajo remoto, IT teams use remote access tools

PoC Exploit for a vulnerability in Win32k

Information Security Experts Published a PoC Exploit for a Vulnerability in Win32k

Information security experts have published a PoC exploit for a

Batcloak obfuscation engine

BatCloak’s New Obfuscation Engine Outperforms 80% of Antiviruses

Los investigadores de Trend Micro informaron recientemente que desde septiembre 2022, atacantes…

Fortinet Fixes RCE Vulnerability in Two Software Solutions

Fortinet Fixes RCE Flaws in FortiOS and FortiProxy

Fortinet, un conocido proveedor de soluciones de seguridad de nivel corporativo, issued an

Clop and MOVEit Transfer

Clop Attacks on MOVEit Transfer Affected British Airways, BBC and More

Según investigadores de seguridad, the Clop ransomware group has been