IntroductionBeginning in December 2023, Zscaler’s ThreatLabz discovered a threat actor creating fraudulent Skype, Google Meet, and Zoom websites to spread malware. The threat actor spreads SpyNote RAT to Android users and NjRAT and DCRat to Windows users. This article describes and shows how the threat actor’s malicious URLs and files can be identified on these fraudulent online meeting websites. Key TakeawaysA threat actor is distributing multiple malware families using fake Skype, Zoom, and Google Meet websites.The threat actor is distributing Remote Access Trojans (RATs) including SpyNote RAT for Android platforms, and NjRAT and DCRat for Windows systems. Campaign OverviewThe attacker utilized shared web hosting, hosting all these fake online meeting sites on a single IP… Source link
Read More »North Korean hacking group attacks ScreenConnect flaws to drop dangerous new malware
North Korean state-sponsored threat actors were observed using the recently discovered ScreenConnect vulnerabilities to steal sensitive data from their targets. A new report from Kroll shared with TechRadar Pro found a group known as Kimsuky (AKA Thallium) abused two flaws found in ConnectWise’s solution to drop ToddleShark, an upgraded version of the group’s other backdoors, BabyShark and ReconShark. BabyShark was previously seen on endpoints belonging to government firms, universities, and research centers in the West. While we don’t know who the victims were in this case, it’s safe to assume they’re from the same verticals. Two ScreenConnect flaws As for the data Kimsuky obtained this way, the researchers said they grabbed information regarding hostnames, system… Source link
Read More »Johnson hosting Gershkovich’s parents at State of the Union address
The parents of detained Wall Street Journal reporter Evan Gershkovich will accompany House Speaker Mike Johnson (R-La.) as his guests for Thursday’s State of the Union address. Johnson, in a statement shared with The Hill, said he is “honored” to host Ella Milman and Mikhail Gershkovich, the parents of Evan Gershkovich, who has spent more than 250 days behind bars in Russia over espionage charges. “By hosting Evan’s parents, Congress will shine a spotlight on the unjust detention of their son. The United States must always stand for freedom of the press around the world, especially in places like Russia, where it is under assault,” Johnson said Tuesday. “The Administration must bring Evan home.” Gershkovich, 32, was detained last March over… Source link
Read More »Binance to discontinue all Naira services
Binance, the world’s largest cryptocurrency exchange, is disabling all its Naira services from March 8 amid the company’s regulatory troubles in Nigeria, the company shared in a statement on its app. The company, which is at the centre of a crypto crackdown in the West African country, will stop naira deposits after March 5, while withdrawals will end on March 8. “Any remaining NGN balances in users’ Binance accounts will be automatically converted to USDT,” the exchange said in a statement on Tuesday. Binance will also delist all existing NGN spot trading pairs on March 7. The naira will be removed from the list of supported payment options on Binance Pay, the exchange’s payment solution. Binance made the statement via its app The… Source link
Read More »Exclusive Deals for New Customers
BEACH, Va., /PRNewswire/ — InMotion Hosting, a leader in web hosting, has announced its 2024 Server Madness Sale, offering significant discounts on premium web hosting services throughout March. This sale is specifically designed for new customer accounts, providing an opportunity to save on a wide range of products from InMotion Hosting, known for its reliable uptime, award-winning support, and commitment to the open source community. Unbeatable Offers on Hosting Plans During the Server Madness Sale, new customers can enjoy incredible savings on InMotion Hosting’s UltraStack Shared Hosting plans. These plans are not only economical but also come equipped with essential features such as cPanel, email, and a free domain,… Source link
Read More »