BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Qilin Leads April 2025 Ransomware Spike with 45 Breaches Using NETXLOADER Malware
/in General NewsThreat actors with ties to the Qilin ransomware family have leveraged malware known as SmokeLoader along with a previously undocumented .NET compiled loader codenamed NETXLOADER as part of a campaign observed in November 2024.
“NETXLOADER is a new .NET-based loader that plays a critical role in cyber attacks,” Trend Micro researchers Jacob Santos, Raymart Yambot, John Rainier Navato, Sarah Pearl
The Hacker News – Read More
How Google’s AI combats new scam tactics – and how you can stay one step ahead
/in General NewsGoogle is trying to lock down Search, Chrome, and Android, but ultimately, you’re the last line of defense.
Latest stories for ZDNET in Security – Read More
Europol Announces More DDoS Service Takedowns, Arrests
/in General NewsFour people have been arrested in Poland and several websites associated with DDoS-for-hire services have been shut down.
The post Europol Announces More DDoS Service Takedowns, Arrests appeared first on SecurityWeek.
SecurityWeek – Read More
Possible Zero-Day Patched in SonicWall SMA Appliances
/in General NewsSonicWall patches three SMA 100 vulnerabilities, including a potential zero-day, that could be chained to execute arbitrary code remotely.
The post Possible Zero-Day Patched in SonicWall SMA Appliances appeared first on SecurityWeek.
SecurityWeek – Read More
Fake AI Tools Push New Noodlophile Stealer Through Facebook Ads
/in General NewsScammers are using fake AI tools and Facebook ads to spread Noodlophile Stealer malware, targeting users with a…
Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – Read More
Countries Begin NATO’s Locked Shields Cyber Defense Exercise
/in General NewsThe NATO-run live cyber exercise event helps countries test and develop defenses against current and emerging cyber threats including disinformation, quantum, and AI.
darkreading – Read More
VC firm Insight Partners confirms personal data stolen during January hack
/in General NewsThe venture capital firm has over $90 billion in assets under management, including cybersecurity giants.
Security News | TechCrunch – Read More
Security Tools Alone Don’t Protect You — Control Effectiveness Does
/in General News61% of security leaders reported suffering a breach due to failed or misconfigured controls over the past 12 months. This is despite having an average of 43 cybersecurity tools in place.
This massive rate of security failure is clearly not a security investment problem. It is a configuration problem. Organizations are beginning to understand that a security control installed or deployed is not
The Hacker News – Read More
Google Finds Data Theft Malware Used by Russian APT in Select Cases
/in General NewsRussia-linked APT Star Blizzard is using the ClickFix technique in recent attacks distributing the LostKeys malware.
The post Google Finds Data Theft Malware Used by Russian APT in Select Cases appeared first on SecurityWeek.
SecurityWeek – Read More
Improperly Patched Samsung MagicINFO Vulnerability Exploited by Botnet
/in General NewsThe patches for an exploited Samsung MagicINFO vulnerability are ineffective and a Mirai botnet has started targeting it.
The post Improperly Patched Samsung MagicINFO Vulnerability Exploited by Botnet appeared first on SecurityWeek.
SecurityWeek – Read More