Mandrake Spyware Infects 32,000 Devices via Google Play Apps

Initially detected in May 2020 by Bitdefender, Mandrake went undetected for four years. In April 2024, Kaspersky identified a new variant hidden in five Google Play apps from 2022 to 2024.

Cyware News – Latest Cyber News – ​Read More

Researchers Study Evolution of Ransomware Gang UNC4393’s Campaigns After Qakbot Takedown

Initially relying on Qakbot botnet infections, UNC4393 now uses custom malware and diverse access techniques after the crackdown on Qakbot. They have quick reconnaissance and encryption objectives, with a median time of 42 hours to ransomware.

Cyware News – Latest Cyber News – ​Read More

Can ChatGPT-4o Be Trusted With Your Private Data?

OpenAI’s newest model is “a data hoover on steroids,” says one expert—but there are still ways to use it while minimizing risk.

Security Latest – ​Read More

Cyber Espionage Group XDSpy Targets Companies in Russia and Moldova

Companies in Russia and Moldova have been the target of a phishing campaign orchestrated by a little-known cyber espionage group known as XDSpy.
The findings come from cybersecurity firm F.A.C.C.T., which said the infection chains lead to the deployment of a malware called DSDownloader. The activity was observed this month, it added.
XDSpy is a threat actor of indeterminate origin that was first

The Hacker News – ​Read More

Senate Passes Bill to Protect Kids Online and Make Tech Companies Accountable for Harmful Content

The US Senate has passed a bill to protect kids online and make tech companies accountable for harmful content.

The post Senate Passes Bill to Protect Kids Online and Make Tech Companies Accountable for Harmful Content appeared first on SecurityWeek.

SecurityWeek – ​Read More

DigiCert Revoking Many Certificates Due to Verification Issue

DigiCert is immediately revoking many certificates due to a domain validation issue, which could cause disruption to sites, apps and services.

The post DigiCert Revoking Many Certificates Due to Verification Issue appeared first on SecurityWeek.

SecurityWeek – ​Read More

Cybercriminals Deploy 100K+ Malware Android Apps to Steal OTP Codes

A new malicious campaign has been observed making use of malicious Android apps to steal users’ SMS messages since at least February 2022 as part of a large-scale campaign.
The malicious apps, spanning over 107,000 unique samples, are designed to intercept one-time passwords (OTPs) used for online account verification to commit identity fraud.
“Of those 107,000 malware samples, over 99,000 of

The Hacker News – ​Read More

IBM: Cost of a Breach Reaches Nearly $5 Million, With Healthcare Being Hit the Hardest

Breaches impacted 17 industries across 16 countries and regions, with costs related to detecting breaches, notifying victims, post-breach response efforts, and lost business.

Cyware News – Latest Cyber News – ​Read More

Company Paid Record-Breaking $75 Million to Ransomware Group: Report

Zscaler is aware of a company that paid a record-breaking $75 million ransom to the Dark Angels ransomware group.

The post Company Paid Record-Breaking $75 Million to Ransomware Group: Report appeared first on SecurityWeek.

SecurityWeek – ​Read More

Meta Agrees to $1.4B Settlement With Texas in Privacy Lawsuit Over Facial Recognition

Meta has agreed to a $1.4 billion settlement with Texas in a privacy lawsuit over a facial recognition feature.

The post Meta Agrees to $1.4B Settlement With Texas in Privacy Lawsuit Over Facial Recognition appeared first on SecurityWeek.

SecurityWeek – ​Read More