Kimsuky APT Deploying Linux Backdoor Gomir in South Korean Cyber Attacks

The Kimsuky (aka Springtail) advanced persistent threat (APT) group, which is linked to North Korea’s Reconnaissance General Bureau (RGB), has been observed deploying a Linux version of its GoBear backdoor as part of a campaign targeting South Korean organizations.
The backdoor, codenamed Gomir, is “structurally almost identical to GoBear, with extensive sharing of code between

The Hacker News – ​Read More

Cybersecurity Analysis Exposes High-Risk Assets in Power and Healthcare Sectors

Traditional approaches to vulnerability management result in a narrow focus of the enterprise attack surface area that overlooks a considerable amount of risk, according to Claroty.

Cyware News – Latest Cyber News – ​Read More

GhostSec Announces Shift in Operations from Ransomware to Hacktivism

The cybercriminal group GhostSec has shifted from ransomware to hacktivism, stating they’ve gathered enough funds and will now focus on promoting social and political agendas through hacking.

Cyware News – Latest Cyber News – ​Read More

Woman Accused of Helping North Korean IT Workers Infiltrate Hundreds of US Firms

The US government has announced charges, seizures, arrests and rewards as part of an effort to disrupt a scheme that generates revenue for North Korea.

The post Woman Accused of Helping North Korean IT Workers Infiltrate Hundreds of US Firms appeared first on SecurityWeek.

SecurityWeek – ​Read More

Unsafe Software Development Practices Persist, Despite CISA’s Push

Despite repeated efforts by the CISA to eliminate common software vulnerabilities, unsafe software development practices continue to persist across the industry, highlighting the challenges in driving change in coding practices.

Cyware News – Latest Cyber News – ​Read More

Restore Damaged Files & Save Your Business for Only $50

Regardless of how badly your files, or their formats, are damaged, EaseUS Fixo can restore your office files, videos and photos, even in batches. Get a lifetime subscription for $49.99 at TechRepublic Academy.

Security | TechRepublic – ​Read More

C/side Emerges From Stealth Mode With $1.7 Million Investment

C/side has emerged from stealth mode with $1.7 million in pre-seed funding from Scribble Ventures and angel investors

The post C/side Emerges From Stealth Mode With $1.7 Million Investment appeared first on SecurityWeek.

SecurityWeek – ​Read More

Us Offers $5 Million for Info on North Korean IT Workers Involved in Job Fraud

The U.S. government is offering a $5 million reward for information on a network of North Korean IT workers who allegedly scammed U.S. companies out of nearly $7 million through a job fraud scheme.

Cyware News – Latest Cyber News – ​Read More

Threat Actors Misusing Quick Assist in Social Engineering Attacks Leading to Ransomware

Cybercriminals are exploiting Microsoft’s Quick Assist tool to conduct social engineering attacks and deliver ransomware like Black Basta to target users across various industries.

Cyware News – Latest Cyber News – ​Read More

Ongoing Malvertising Campaign leads to Ransomware

Cybercriminals have weaponized popular software tools like WinSCP and PuTTY to deliver ransomware, tricking users into downloading malicious installers that infect their systems with a Sliver beacon and other malicious payloads.

Cyware News – Latest Cyber News – ​Read More