Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
A cyberespionage campaign dubbed CaptiveCrunch, attributed to Russian threat actor Storm-2945 (linked to APT29/Cozy Bear), has been delivering the CornFlake RAT via compromised hotel Wi-Fi networks. Attackers hijacked captive portals to manipulate DNS responses, redirecting users to fake browser or OS updates that, when executed, deploy malware capable of capturing webcam feeds, microphone audio, keystrokes, and browser credentials.
BleepingComputer reports Amgen confirmed a cloud data breach exposing patient health information and proprietary data. The incident raises significant compliance and privacy concerns under healthcare regulations.
BleepingComputer reports Amgen confirmed a cloud data breach exposing patient health information and proprietary data. The incident raises significant compliance and privacy concerns under healthcare regulations.
BleepingComputer reports Arch Linux disabled AUR package adoption to combat a wave of malware submissions. Malicious packages containing backdoors and cryptominers were targeting AUR users.
BleepingComputer reports Arch Linux disabled AUR package adoption to combat a wave of malware submissions. Malicious packages containing backdoors and cryptominers were targeting AUR users.
BleepingComputer reports that online advertising firm Adform's script was compromised to steal cryptocurrency from visitors. The attack injected wallet-swapping code affecting numerous publisher sites.