Recent Security News
-
Malware Uses Trigonometry to Track Mouse Strokes
November 20, 2023 at 05:06PM The latest version of the LummaC2 malware-as-a-service has a new anti-sandbox feature. Version 4.0 uses trigonometry to track mouse movements and detect when a human user is active on a compromised computer. This allows the malware to avoid detection in sandboxes and gain access to the network. While the use…
-
Microsoft fixes ‘Something Went Wrong’ Office sign-in errors
November 20, 2023 at 04:23PM Microsoft is addressing sign-in errors and unusable desktop applications in Microsoft 365. The company has released fixes and is investigating the issues. Users are advised to open support tickets and attach logs for faster investigation. Workarounds include using web apps or mobile applications and rebooting devices. Additional guidance is available…
-
Amid Military Buildup, China Deploys Mustang Panda in the Philippines
November 20, 2023 at 04:12PM Chinese APT group Mustang Panda, also known as Stately Taurus, has been conducting cyber espionage operations against high-profile government and government-adjacent organizations in the South Pacific, including the exploitation of a Philippine government entity. The group used a simple sideloading technique involving malicious ZIP files to compromise their targets. Unit…
-
MOVEit victim count latest: 2.6K+ orgs hit, 77M+ people’s data stolen
November 20, 2023 at 03:50PM Progress Software’s MOVEit file transfer application has been exploited by the Russian ransomware group Clop, impacting 2,620 organizations and over 77 million individuals. Avast, the antivirus company, is among the victims, with 3 million customers’ information reportedly leaked on a hacking forum. Welltok, a patient communication services provider, has also…
-
VX-Underground malware collective framed by Phobos ransomware
November 20, 2023 at 03:46PM A new variant of the Phobos ransomware has emerged, attempting to frame the VX-Underground malware-sharing collective. This variant appends the email address [email protected] and the extension ‘VXUG’ to encrypted files, while ransom notes make reference to the group. Threat actors sometimes taunt security researchers and organizations in their malware and…