‘CrystalRay’ Expands Arsenal, Hits 1,500 Targets with SSH-Snake and Open Source Tools

A threat actor tracked as CrystalRay has hit 1,500 victims since February, stealing credentials and deploying backdoors.

The post ‘CrystalRay’ Expands Arsenal, Hits 1,500 Targets with SSH-Snake and Open Source Tools appeared first on SecurityWeek.

SecurityWeek – ​Read More

BunkerWeb: Open-Source Web Application Firewall (WAF)

The genesis of BunkerWeb came from the need to apply security practices manually every time a web application was put online. The solution meets global needs with a modular architecture allowing for extensions.

Cyware News – Latest Cyber News – ​Read More

You can now get SpaceX’s Starlink Mini internet antenna that can fit in your backpack

The small kit comes with a built-in Wi-Fi router that promises internet anywhere in the US, and it’s no longer tied to a home subscription.

Latest news – ​Read More

Baseus power banks recalled due to fire hazard – check your model number

Following several dozen reports of fires, the company is voluntarily recalling two of its popular power banks. See if you’re affected and what replacements we recommend.

Latest news – ​Read More

The 47 best early Prime Day 2024 gaming deals

Amazon’s annual Prime Day sale is just around the corner, but you don’t have to wait to find great deals on gaming consoles, PCs and laptops, accessories, and even games themselves.

Latest news – ​Read More

Critical GitLab Bug Lets Attackers Run Pipelines as Other Users

The vulnerability impacts all GitLab CE/EE versions from 15.8 to 16.11.6, 17.0 to 17.0.4, and 17.1 to 17.1.2. Under certain circumstances that GitLab has yet to disclose, attackers can exploit it to trigger a new pipeline as an arbitrary user.

Cyware News – Latest Cyber News – ​Read More

The best portable power stations of 2024: Expert tested and reviewed

Going off the grid, or need power in a pinch during a power outage? I tested the best portable power stations to keep your devices running.

Latest news – ​Read More

ViperSoftX Info-Stealing Malware Being Distributed Through Fake Ebooks

Originally detected in 2020, the ViperSoftX malware now incorporates more sophisticated evasion tactics by using the Common Language Runtime (CLR) to run PowerShell commands within AutoIt scripts distributed through pirated eBook copies.

Cyware News – Latest Cyber News – ​Read More

‘Crystalray’ Attacks Jump 10X, Using Only OSS to Steal Credentials

Remember when hackers used to write their own malware? Kids these days don’t want to work, they just want freely available tools to do it for them.

darkreading – ​Read More

Risk Escalates as Communication Channels Proliferate

A survey by data security company Kiteworks reveals that around 60% of organizations struggle to track their information once it leaves through communication channels like email.

Cyware News – Latest Cyber News – ​Read More