Aggregator
Mirai Botnet Attacking Apache OFBiz Directory Traversal Vulnerability
The notorious Mirai botnet has been observed exploiting a recently disclosed directory traversal vulnerability in Apache OFBiz. This Java-based framework, supported by the Apache Foundation, is used for creating ERP (Enterprise Resource Planning) applications, which are critical for managing sensitive business data despite being less prevalent than commercial alternatives. Vulnerability Details and Exploitation According to […]
The post Mirai Botnet Attacking Apache OFBiz Directory Traversal Vulnerability appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.
Hackers Abused StackExchange Platform To Deliuver Malicious Python Package
Attackers uploaded malicious Python packages targeting Raydium and Solana users to PyPI, leveraging a StackExchange post to distribute the malware. The multi-stage malware stole sensitive data, drained cryptocurrency wallets, and established persistent backdoor access, bypassing Windows security protections, underscoring the vulnerability of software supply chains and the ineffectiveness of traditional endpoint security solutions against modern […]
The post Hackers Abused StackExchange Platform To Deliuver Malicious Python Package appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.
Исследователи бьют тревогу относительно скорого закрытия CrowdTangle
玫瑰为什么长刺?
关注 | 2024年7月全国受理网络违法和不良信息举报1904.1万件
盘点 | 中国互联网联合辟谣平台2024年7月辟谣榜
评论 | 清朗网络也是优化营商环境
国际 | 美欧加快人工智能监管合作
评论 | 铸造保护个人隐私新利器
前沿 | 智能网联汽车网络安全事件分析溯源挑战与思考
全球视野 | 国际网安快讯(第22期)
FreeBuf知识大陆APP入驻华为应用市场
Mint-stealer Targeting web browsers, VPN clients & messaging apps to Steal Logins
Mint-Stealer is a Malware-as-a-Service tool designed to exfiltrate sensitive data from compromised systems stealthily and targets a broad spectrum of data, including web credentials, cryptocurrency wallet details, gaming credentials, VPN configurations, messaging app data, and FTP client information. Employing encryption and obfuscation, Mint-Stealer evades detection while actively stealing data. Distributed through dedicated websites and supported […]
The post Mint-stealer Targeting web browsers, VPN clients & messaging apps to Steal Logins appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.
【高端培训招募】KCon大会培训日,正式回归啦!
演讲议题巡展 | 汽车安全自动化测试工具浅谈
APT41 Hackers Attacking Research Institute with ShadowPad and Cobalt Strike
Cisco Talos has unearthed a sophisticated cyber-espionage campaign targeting a Taiwanese government-affiliated research institute. The attack, attributed to the notorious Chinese hacking group APT41, involved the deployment of the ShadowPad malware and Cobalt Strike, among other customized tools. This article delves into the specifics of the attack, the methodologies employed by the hackers, and the […]
The post APT41 Hackers Attacking Research Institute with ShadowPad and Cobalt Strike appeared first on Cyber Security News.
Exodus Underground Market Place Emerging As A Heaven For Cybercriminals
The Exodus Market, a haven for exiled criminals, has grown to become a significant player in the black market economy. The user “ExodusMarket” originally announced Exodus Market for Logs on the Cracked forum on February 10, 2024, after it was formally launched at the end of January 2024. Twice, in March 2024 and July 16, […]
The post Exodus Underground Market Place Emerging As A Heaven For Cybercriminals appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.