Free Sniper Dz Phishing Tools Fuel 140,000+ Cyber Attacks Targeting User Credentials

October 1, 2024 at 03:45AM Over 140,000 phishing websites linked to Sniper Dz, a phishing-as-a-service platform, have been discovered. It offers free services, drawing in cybercriminals, while also collecting stolen credentials. Aspiring threat actors can easily mount phishing attacks through PhaaS platforms, such as Sniper Dz. The platform operates openly and has been observed targeting … Read more

Telegram apologizes to South Korea and takes down smutty deepfakes

September 4, 2024 at 12:34AM Telegram has cooperated with South Korean authorities by taking down 25 videos of sex crimes and apologizing for the content. South Korea’s Communications Standards Commission expressed hope for a productive relationship and requested an email hotline for rapid takedown requests. The situation also involves French authorities detaining Telegram’s boss over … Read more

Telegram Zero-Day Enabled Malware Delivery

July 23, 2024 at 08:15AM ESET has warned of a zero-day exploit affecting Telegram for Android, allowing threat actors to distribute malicious files disguised as videos. The vulnerability, dubbed EvilVideo, auto-downloads payloads containing APK files presented as multimedia previews. Users are advised to update their app to version 10.14.5 to address this issue. Based on … Read more

Telegram CEO calls out rival Signal, claiming it has ties to US government

May 14, 2024 at 10:41AM Telegram CEO Pavel Durov criticized Signal, claiming it has ties to US government and lacks security. He referred to a City Journal report detailing Signal’s origins and its connections to the US government. However, there is no evidence to support his claims. Durov’s statements may be influenced by Telegram’s financial … Read more

‘Tycoon’ Malware Kit Bypasses Microsoft, Google MFA

March 27, 2024 at 01:01PM Threat actors are increasingly using the inexpensive and rapidly expanding phishing-as-a-service (PhaaS) platform, available for purchase through Telegram. Certainly! The takeaway from the meeting notes is that threat actors are increasingly utilizing the inexpensive and rapidly expanding phishing-as-a-service (PhaaS) platform, which is being distributed through Telegram. This insight highlights the … Read more

Telegram Marketplaces Fuel Phishing Attacks with Easy-to-Use Kits and Malware

January 31, 2024 at 07:51AM Cybersecurity researchers highlight Telegram’s role in democratizing the phishing ecosystem, enabling cybercriminals to easily exchange tools and resources. This trend has made phishing more accessible to newcomers, with malicious activities facilitated through the platform’s public channels and groups. The article also discusses the various components and monetization strategies involved in … Read more

Anonymous Sudan Launches Cyberattack on Chad Telco

January 11, 2024 at 11:07AM Anonymous Sudan launched a “massive cyberattack” on Sudachad, a telecommunications provider in Chad. The attack targeted critical infrastructure, leading to a collapse in Internet connectivity on Jan. 10. The group cited Chad’s support for the paramilitary group Rapid Support Forces as the motive. Sudachad holds a 20-year concession agreement for … Read more

Malicious Apps Disguised as Banks and Government Agencies Targeting Indian Android Users

November 21, 2023 at 03:18AM A new malware campaign in India targets Android smartphone users through social engineering. Attackers send messages on platforms like WhatsApp and Telegram, impersonating banks and government services. They entice users to install a fraudulent app that steals sensitive data and banking details. The app also intercepts one-time passwords (OTPs) and … Read more

Malicious NuGet Package Targeting .NET Developers with SeroXen RAT

October 12, 2023 at 09:57AM A malicious package named Pathoschild.Stardew.Mod.Build.Config has been found on the NuGet package manager. It delivers a remote access trojan called SeroXen RAT. The package is a typosquat of a legitimate package and has artificially inflated its download count to over 100,000. The profile behind the package has published six other … Read more

October 10, 2023 at 09:54AM – ‘HTTP/2 Rapid Reset’ Zero-Day Exploited to Launch Largest DDoS Attacks in History

October 10, 2023 at 09:54AM A new zero-day vulnerability called ‘HTTP/2 Rapid Reset’ has been exploited by malicious actors to launch massive distributed denial-of-service (DDoS) attacks. Cloudflare, Google, and AWS have all experienced record-breaking attacks, with the largest reaching 398 million requests per second. The attacks leverage a feature in the HTTP/2 protocol and have … Read more