Browsing tag

Trojan

Transparent Tribe Uses Fake YouTube Android Apps to Spread CapraRAT Malware

The suspected Pakistan-linked threat actor known as Transparent Tribe is using malicious Android apps mimicking YouTube to distribute the CapraRAT mobile remote access trojan (RAT), demonstrating the continued evolution of the activity. “CapraRAT is a highly invasive tool that gives the attacker control over much of the data on the Android devices that it infects,” […]

Hackers Using Trojanized macOS Apps to Deploy Evasive Cryptocurrency Mining Malware

Trojanized versions of legitimate applications are being used to deploy evasive cryptocurrency mining malware on macOS systems. Jamf Threat Labs, which made the discovery, said the XMRig coin miner was executed by means of an unauthorized modification in Final Cut Pro, a video editing software from Apple. “This malware makes use of the Invisible Internet […]

UpdateAgent Returns with New macOS Malware Dropper Written in Swift

A new variant of the macOS malware tracked as UpdateAgent has been spotted in the wild, indicating ongoing attempts on the part of its authors to upgrade its functionalities. “Perhaps one of the most identifiable features of the malware is that it relies on the AWS infrastructure to host its various payloads and perform its […]

Experts Sound Alarm on DCRat Backdoor Being Sold on Russian Hacking Forums

Cybersecurity researchers have shed light on an actively maintained remote access trojan called DCRat (aka DarkCrystal RAT) that’s offered on sale for “dirt cheap” prices, making it accessible to professional cybercriminal groups and novice actors alike. “Unlike the well-funded, massive Russian threat groups crafting custom malware […], this remote access Trojan (RAT) appears to be […]

TA544 threat actors hit Italian firms with Ursnif banking trojan

The IT security researchers at Proofpoint have discovered a new malware campaign in which threat actors from a group called TA544 are targeting organizations in Italy with Ursnif banking trojan. Ursnif (also known as Gozi) has a history of targeting Italian organizations over the past year. The malware is capable of stealing banking information from […]

GriftHorse Android malware hit 10 million devices in 70 countries

GriftHorse malware uses malicious apps to subscribe victims to premium services that cost them $42 (£30 –€36) per month. The IT security researchers at Zimperium Labs have reported an Android malware campaign affecting devices around the world to carry out financial scams and steal user data. According to researchers, nearly 10 million devices across 70 […]

Nameless malware stole 26m login credentials from 3.25m computers

The total amount of data collected by the malware includes nearly 26 million login credentials holding 1.1 million unique email addresses, 2 billion+ cookies and 6.6 million files. In recent news, a malware study performed by NordLocker, a subsidiary of NordVPN, along with a third-party company that specialises in data breach analysis, revealed that a […]

A new and dangerous backdoor available on deep web

According to reports from digital forensics experts, the dangerous hacker group known as Platinum has announced the release of Titanium, a new backdoor Trojan that includes advanced features to control an infected computer completely. The report, published by security firm Kaspersky Lab, mentions that this backdoor can hide from the sight of victims posing as […]

New SystemBC malware targets Windows PCs by evading detection

A new Windows malware in Play – SystemBC. While finding and removing malware on your computer system may indeed be a joyous moment, there’s a new malware out there that will give you a headache instead. To know why, a dive through is needed into SystemBC, a malware written in C++ that has been discovered […]

After Hacking 250M Accounts, TrickBot Trojan Can Now ‘Disable’ Windows Defender

If you are someone who relies on “Windows Defender” on Windows 10 to protect your device from malware threats, you should know about the new version of TrickBot malware that attempts to disable the antivirus software altogether. TrickBot Trojan isn’t exactly new as it surfaces from time to time. The last we heard about TrickBot was […]

Pale Moon Archive Server Infected With Malware

Hackers broke the file server of the Pale Moon browser project and attacked the previous version of the browser with malicious software. The lead developer of Pale Moon, Mr. C. Straver, said the hack was undetectable for more than 18 months. The Pale Moon file server is used to host an earlier version of the […]

Remove TV Adware With These Easy Steps

It may be irritating, your screen is full of ads, and when you close one, another appears. Yes, we are talking about adware. What is adware? Adware is synonymous with the ad-supported software. Known as one of the Mac’s biggest problems, it has become ubiquitous in the Android operating system and reaches the Google Play […]

Know the Role of Data Forensics

Sometimes known as computer forensics, data forensics refers to the process of investigating digital data or programs in order to find out how it was created and what it is for. Having said that, data forensics itself is a very broad term, since it covers everything from identifying, preserving, recovering, analyzing, and presenting digital data.  […]

Malicious Payload Evasion Techniques with Advanced Exploitation Frameworks

Sophisticated threats are Evolving with much more advanced capabilities and giving more pain for analysis even evade the advanced security software such as Antivirus. This comparison is made by the payload ability to bypass the default security frameworks accessible on Windows machines and antivirus systems available, searching for an approach to get a payload that […]

Due To Disabled Auto-Update: Old WinRar Bug Caused Trouble For Users

Just like the operating system itself, application software needs to be updated regularly in order to prevent the possibility of fixed security vulnerability from being taken advantage of by 3rd parties. It is unfortunate that many users are starting to avoid auto-updates for their software altogether in order to prevent the hassles of restarting the […]

Hackers are using 19-year-old WinRAR bug to install nasty malware

By using the bug, hackers are desperately dropping persistent malware through generic trojan on systems using the old version of WinRar. McAfee security firm’s researcher Craig Schmugar has identified that the world famous and commonly used compression software WinRar is plagued with code execution vulnerability for the past nineteen years. Resultantly, over 100 exploits have surfaced that […]

A hacker deploys malware using an old videogame

Various groups of cyber criminals are exploiting a series of zero-day vulnerabilities in Counter Strike 1.6, an old videogame, to spread the Trojan known as Belonard, reported network security and ethical hacking specialists from the International Institute of Cyber Security. To get a better perspective on how dangerous this campaign is, the network security and […]

Astaroth Trojan Disguises as JPEG, GIF File Abuses OS and Antivirus Process to Steal Data

A new unique campaign abuses system native OS process and security software to steal passwords and personal information. Threat actors disguise the Astaroth Trojan payload as JPEG, GIF, and extensionless to avoid file detections. The campaign especially targets the users in Brazil and the initial infection starts with a phishing-based campaign. Researchers form cybereason observed […]

This Trojan Steals Credentials By Exploiting Antivirus Software

In a blog post, Cybereason’s Nocturnus Research Team has uncovered a new strain of Astaroth Trojan which infects systems by exploiting processes of antivirus software installed in it. The Trojan is being deployed in spam campaigns in Brazil and Europe where it targeted thousands of computers as of December 2018. It spreads itself via malicious […]

An energy company suffers data breach after videogame installation

An energy company suffered the theft of sensitive information because an employee downloaded a malware disguised as a videogame According to network security and ethical hacking experts from the International Institute of Cyber Security, the South African energy company Eskom Group has suffered a double data breach due to an unsecured database and the infection […]

US-CERT Alerts Powerful Emotet Banking Malware Attack on Government, Private and Public Sectors

The US-Cert team issued an alert for advanced Emotet banking malware attack that targets governments, private and public sectors in the most destructive way to steal various sensitive information. Emotet banking malware is continually spreading since 2017 and it is one of the costly banking trojans that mainly affecting territorial (SLTT) governments. Recent malware campaign […]