A newly observed botnet capable of self-replicating and self-propagation is targeting multiple Internet of Things (IoT) vulnerabilities for initial access, cybersecurity solutions provider Fortinet warns.
Redigo: New Backdoor Targeting Redis Servers
Researchers at cloud security company Aqua Security are raising alarm on a newly identified backdoor targeting Redis servers.
Over 100 Organizations Hit by Cuba Ransomware: CISA, FBI
Cuba ransomware attacks on critical infrastructure have continued in 2022, the Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) warn.
‘Schoolyard Bully’ Android Trojan Targeted Facebook Credentials of 300,000 Users
Mobile security firm Zimperium is warning of an Android trojan that may have stolen Facebook credentials from a large number of users.
Google Links Exploitation Frameworks to Spanish Spyware Vendor Variston
Google’s Threat Analysis Group (TAG) has linked three exploitation frameworks, as well as several vulnerabilities that were likely used as zero-days at some point, to a Spanish commercial spyware vendor named Variston.
Self-Replicating Malware Used by Chinese Cyberspies Spreads via USB Drives
A China-linked cyberespionage group tracked as UNC4191 has been observed using self-replicating malware on USB drives to infect targets, and the technique could allow them to steal data from air-gapped systems, Google-owned Mandiant reports.
Oracle Fusion Middleware Vulnerability Exploited in the Wild
The US Cybersecurity and Infrastructure Security Agency (CISA) on Monday warned organizations that a critical Oracle Fusion Middleware vulnerability patched in early 2022 is being exploited in attacks.
Microsoft Warns of Boa Web Server Risks After Hackers Target It in Power Grid Attacks
Microsoft is warning organizations about the risks associated with the discontinued Boa web server after vulnerabilities affecting the software were apparently exploited by threat actors in an operation aimed at the energy sector.
Multi-Purpose Botnet and Infostealer ‘Aurora’ Rising to Fame
Aurora, a multi-purpose botnet being advertised on underground forums since April, has been adopted by multiple cybercriminals over the past few months, cybersecurity firm Sekoia.io reports.
Microsoft Warns of Cybercrime Group Delivering Royal Ransomware, Other Malware
A threat actor tracked as DEV-0569 and known for the distribution of various malicious payloads was recently observed updating its delivery methods, Microsoft warns.












