The article outlines the top 10 cyber threats CISOs faced (and will face) in 2023, with strategic guidance inspired by Verizon DBIR 2024. It covers ransomware, identity-based attacks, DoS, cloud, supply chains, zero-days, cyber warfare, code injection, legacy …
Tag: SPYWARE
Summary: Microsoft’s new automatic screenshot retrieval feature, Recall, has raised security and privacy concerns as experts warn that it could enable hackers to steal sensitive information. Threat Actor: Hackers | hackers Victim: Microsoft | Microsoft Key Point : Microsoft’s new feature, Recall, al…
Summary: A consumer-grade spyware app called pcTattletale has been found running on the check-in systems of Wyndham hotels, capturing screenshots of guest details and customer information, which are available to anyone on the internet. Threat Actor: Consumer-grade spyware app pcTattletale. Victim: W…
Summary: Scammers are selling counterfeit code of the NSO Group’s Pegasus spyware, taking advantage of its notoriety for financial gain. Threat Actor: Scammers selling counterfeit code advertised as the NSO Group’s Pegasus spyware. Victim: Potential buyers who are deceived into purchasing the counte…
AttackIQ has released a new attack graph in response to the recently published CISA Advisory (AA24-131A) which disseminates known Tactics, Techniques, and Procedures (TTPs) and Indicators of Compromise (IOCs) associated to Black Basta ransomware, a ransomware variant whose operators have encrypted and stolen data from at least 12 out of 16…
Summary: Google is introducing new anti-theft and data protection features for Android devices, including a Theft Detection Lock, Offline Device Lock, and Remote Lock. Threat Actor: N/A Victim: N/A Key Points: Google is introducing multiple anti-theft and data protection features for Android devices…
Summary: The US Cybersecurity and Infrastructure Security Agency (CISA) has released a guide to help civil society organizations mitigate cyber threats, particularly those posed by state-sponsored actors from nations like Russia, China, Iran, and North Korea. Threat Actor: State-sponsored actors | s…
Summary: Apple has backported security patches to older iPhones and iPads, fixing an iOS zero-day vulnerability that was actively exploited in attacks. Threat Actor: Unknown | Unknown Victim: Apple | Apple Key Point : Apple has addressed a memory corruption issue in its RTKit real-time operating sys…
Cuckoo Stealer is a new macOS infostealer/spyware family that is expanding through trojanized apps and malicious installers. It combines XOR-based obfuscation, AppleScript abuse, and Launch Agent persistence to steal data while avoiding basic defenses. #Cuckoo…
The new strategy of the U.S. government aims to defend against cyberattacks on critical infrastructure, prevent surveillance misuses, and promote digital solidarity among global partners….
Cuckoo employs deceptive tactics, claiming to convert Spotify music to MP3 format while actually stealing sensitive data like passwords, browsing history, cryptocurrency wallet details, and more….
An investigation by Amnesty International’s Security Lab revealed that Indonesia has been procuring powerful and invasive commercial spyware and surveillance products from international vendors, brokers, and resellers….
Cuckoo is a newly observed macOS Mach-O malware that blends spyware with infostealer capabilities, distributed via a malicious version of DumpMedia Spotify Music Converter and related tools. It uses heavy stealth techniques, including XOR-encoded strings, app …
The initiative is designed to mitigate the threat of consumer-grade devices being targeted by commercial spyware, potentially enabling sophisticated threat actors to use these as a stepping stone into back-end corporate systems and data….
LightSpy, long seen as iOS malware, has a newly documented macOS variant that targets macOS devices via a dropper that loads a series of dylibs and multiple plugins. The macOS implant uses a plugin manifest, AES-encrypted configuration, and WebSocket-based C2 …