North Korean Hackers Targeting Defense Firms with ThreatNeedle Malware – Tempemail

A prolific North Korean state-sponsored hacking group has been tied to a new ongoing espionage campaign aimed at exfiltrating sensitive information from organizations in the defense industry. Attributing the attacks with high confidence to the Lazarus Group, the new findings from Kaspersky signal an expansion of the APT actor’s tactics Continue Reading

Malicious Amazon Alexa Skills Can Easily Bypass Vetting Process – Tempemail

Researchers have uncovered gaps in Amazon’s skill vetting process for the Alexa voice assistant ecosystem that could allow a malicious actor to publish a deceptive skill under any arbitrary developer name and even make backend code changes after approval to trick users into giving up sensitive information. The findings were Continue Reading

Cisco Releases Security Patches for Critical Flaws Affecting its Products – Tempemail

Cisco has addressed a maximum severity vulnerability in its Application Centric Infrastructure (ACI) Multi-Site Orchestrator (MSO) that could allow an unauthenticated, remote attacker to bypass authentication on vulnerable devices. “An attacker could exploit this vulnerability by sending a crafted request to the affected API,” the company said in an advisory Continue Reading

Chinese Hackers Using Firefox Extension to Spy On Tibetan Organizations – Tempemail

Cybersecurity researchers today unwrapped a new campaign aimed at spying on vulnerable Tibetan communities globally by deploying a malicious Firefox extension on target systems. “Threat actors aligned with the Chinese Communist Party’s state interests delivered a customized malicious Mozilla Firefox browser extension that facilitated access and control of users’ Gmail Continue Reading

The Top Free Tools for Sysadmins in 2021 – Tempemail

It’s no secret that sysadmins have plenty on their plates. Managing, troubleshooting, and updating software or hardware is a tedious task. Additionally, admins must grapple with complex webs of permissions and security. This can quickly become overwhelming without the right tools. If you’re a sysadmin seeking to simplify your workflows, Continue Reading

Russian Hackers Targeted Ukraine Authorities With Supply-Chain Malware Attack – Tempemail

Ukraine is formally pointing fingers at Russian hackers for hacking into one of its government systems and attempting to plant and distribute malicious documents that would install malware on target systems of public authorities. “The purpose of the attack was the mass contamination of information resources of public authorities, as Continue Reading

Online Trackers Increasingly Switching to Invasive CNAME Cloaking Technique – Tempemail

With browser makers steadily clamping down on third-party tracking, advertising technology companies are increasingly embracing a DNS technique to evade such defenses, thereby posing a threat to web security and privacy. Called CNAME Cloaking, the practice of blurring the distinction between first-party and third-party cookies not only results in leaking Continue Reading

Experts Warns of Notable Increase in QuickBooks Data Files Theft Attacks – Tempemail

New research has uncovered a significant increase in QuickBooks file data theft using social engineering tricks to deliver malware and exploit the accounting software. “A majority of the time, the attack involves basic malware that is often signed, making it hard to detect using antivirus or other threat detection software,” Continue Reading

Everything You Need to Know About Evolving Threat of Ransomware – Tempemail

The cybersecurity world is constantly evolving to new forms of threats and vulnerabilities. But ransomware proves to be a different animal—most destructive, persistent, notoriously challenging to prevent, and is showing no signs of slowing down. Falling victim to a ransomware attack can cause significant data loss, data breach, operational downtime, Continue Reading

Critical RCE Flaws Affect VMware ESXi and vSphere Client — Patch Now – Tempemail

VMware has addressed multiple critical remote code execution (RCE) vulnerabilities in VMware ESXi and vSphere Client virtual infrastructure management platform that may allow attackers to execute arbitrary commands and take control of affected systems. “A malicious actor with network access to port 443 may exploit this issue to execute commands Continue Reading