Hackers Now Use AppDomain Injection to Drop Cobalt Strike Beacons

Hackers are now using AppDomain Injection to drop Cobalt Strike beacons in a series of attacks that began in July 2024. This technique, known as AppDomain Manager Injection, can weaponize any Microsoft .NET application on Windows.

Cyware News – Latest Cyber News – ​Read More

Exploit for CVE-2024-38054 Released: Elevation of Privilege Flaw in Windows Kernel Streaming WOW Thunk

This vulnerability allows local attackers to escalate privileges to SYSTEM level through a heap-based buffer overflow. With a CVSS score of 7.8, CVE-2024-38054 is a critical flaw patched by Microsoft in July.

Cyware News – Latest Cyber News – ​Read More

Scammers are increasingly using messaging and social media apps to attack

Meta platforms, alongside Telegram, are among the growing number of sites used as a form of contact in 45% of scams.

Latest stories for ZDNET in Security – ​Read More

Liverpool Fans Take English Premier League Title for Ticket Scams

Ticket scams are costing football fans close to £200 a season, on average, according to a report.

darkreading – ​Read More

NIST Hands Off Post-Quantum Cryptography Work to Cyber Teams

The release of new NIST quantum-proof cryptography standards signals it’s time for cybersecurity teams to get serious about preparing for the rise of quantum threats.

darkreading – ​Read More

Patch Now: Second SolarWinds Critical Bug in Web Help Desk

The disclosure of CVE-2024-28987 means that, in two weeks, there have been two critical bugs and corresponding patches for SolarWinds’ less-often-discussed IT help desk software.

darkreading – ​Read More

Constantly Evolving MoonPeak RAT Linked to North Korean Spying

The malware is a customized variant of the powerful open source XenoRAT information stealing malware often deployed by Kimsuky and other DPRK APTs.

darkreading – ​Read More

Cybercriminals Deploy New Malware to Steal Data via Android’s Near Field Communication (NFC)

A new malware called NGate allows cybercriminals to steal near field communication data from Android phones via sophisticated social engineering. The data is relayed to the fraudsters before being used to steal cash.

Security | TechRepublic – ​Read More

CrowdStrike 2024 report exposes North Korea’s covert workforce in U.S. tech firms

In April 2024, CrowdStrike Services responded to the first of several incidents in which North Korea’s FAMOUS CHOLLIMA malicious insiders targeted U.S. firmsRead More

Security News | VentureBeat – ​Read More