FreshRSS

πŸ”’
❌ Secure Planet Training Courses Updated For 2019 - Click Here
There are new available articles, click to refresh the page.
☐ β˜† βœ‡ The Hacker News

Two Chinese APT Groups Ramp Up Cyber Espionage Against ASEAN Countries

By: Newsroom β€” March 27th 2024 at 04:20
Two China-linked advanced persistent threat (APT) groups have been observed targeting entities and member countries affiliated with the Association of Southeast Asian Nations (ASEAN) as part of a cyber espionage campaign over the past three months. This includes the threat actor known as Mustang Panda, which has been recently linked to cyber attacks against Myanmar as well as
☐ β˜† βœ‡ The Hacker News

Mustang Panda Targets Asia with Advanced PlugX Variant DOPLUGS

By: Newsroom β€” February 21st 2024 at 13:03
The China-linked threat actor known as Mustang Panda has targeted various Asian countries using a variant of the PlugX (aka Korplug) backdoor dubbed DOPLUGS. "The piece of customized PlugX malware is dissimilar to the general type of the PlugX malware that contains a completed backdoor command module, and that the former is only used for downloading the latter," Trend Micro researchers Sunny Lu
☐ β˜† βœ‡ The Hacker News

Malicious Ads on Google Target Chinese Users with Fake Messaging Apps

By: Newsroom β€” January 26th 2024 at 09:44
Chinese-speaking users have been targeted by malicious Google ads for restricted messaging apps like Telegram as part of an ongoing malvertising campaign. "The threat actor is abusing Google advertiser accounts to create malicious ads and pointing them to pages where unsuspecting users will download Remote Administration Trojan (RATs) instead," Malwarebytes' JΓ©rΓ΄me Segura said in a
☐ β˜† βœ‡ The Hacker News

Carderbee Attacks: Hong Kong Organizations Targeted via Malicious Software Updates

By: THN β€” August 22nd 2023 at 10:12
A previously undocumented threat cluster has been linked to a software supply chain attack targeting organizations primarily located in Hong Kong and other regions in Asia. The Symantec Threat Hunter Team, part of Broadcom, is tracking the activity under its insect-themed moniker Carderbee. The attacks, per the cybersecurity firm, leverage a trojanized version of a legitimate software called
☐ β˜† βœ‡ The Hacker News

Pakistani Entities Targeted in Sophisticated Attack Deploying ShadowPad Malware

By: THN β€” July 18th 2023 at 12:58
An unidentified threat actor compromised an application used by multiple entities in Pakistan to deliverΒ ShadowPad, a successor to the PlugX backdoor that's commonly associated withΒ Chinese hacking crews. Targets included a Pakistan government entity, a public sector bank, and a telecommunications provider, according to Trend Micro. The infections took place between mid-February 2022 and
☐ β˜† βœ‡ The Hacker News

Chinese Hackers Use HTML Smuggling to Infiltrate European Ministries with PlugX

By: Ravie Lakshmanan β€” July 3rd 2023 at 13:25
A Chinese nation-state group has been observed targeting Foreign Affairs ministries and embassies in Europe usingΒ HTML smuggling techniquesΒ to deliver the PlugX remote access trojan on compromised systems. Cybersecurity firm Check Point said the activity, dubbedΒ SmugX, has been ongoing since at least December 2022, adding it's part of a broader trend of Chinese adversaries shifting their focus
☐ β˜† βœ‡ The Hacker News

Hackers Exploiting Remote Desktop Software Flaws to Deploy PlugX Malware

By: Ravie Lakshmanan β€” March 9th 2023 at 14:54
Security vulnerabilities in remote desktop programs such as Sunlogin and AweSun are being exploited by threat actors to deploy the PlugX malware. AhnLab Security Emergency Response Center (ASEC), in aΒ new analysis, said it marks the continued abuse of the flaws to deliver a variety of payloads on compromised systems. ThisΒ includesΒ the Sliver post-exploitation framework, XMRig cryptocurrency
❌