Month: March 2023

India’s market regulator on Thursday passed two interim orders against entities that used YouTube channels to manipulate stocks, barring them from the capital markets. The Securities and Exchange Board of India (SEBI), in preliminary investigations, identified 46 entities that used the video streaming platform to pump and dump stocks. These entities — a mix of traders
0 Comments
Netflix’s video streaming services were down for thousands of users on Thursday, according to outage-tracking website Downdetector.com. There were around 1,800 reports on Downdetector, which collates status reports from a number of sources. About 55 percent of the users reported issues with the website, according to Downdetector. Netflix did not immediately respond to a Reuters
0 Comments
Mar 01, 2023Ravie LakshmananEndpoint Security / Cyber Threat A stealthy Unified Extensible Firmware Interface (UEFI) bootkit called BlackLotus has become the first publicly known malware capable of bypassing Secure Boot defenses, making it a potent threat in the cyber landscape. “This bootkit can run even on fully up-to-date Windows 11 systems with UEFI Secure Boot
0 Comments
Mar 01, 2023Ravie LakshmananThreat Intelligence / Malware Six different law firms were targeted in January and February 2023 as part of two disparate threat campaigns distributing GootLoader and FakeUpdates (aka SocGholish) malware strains. GootLoader, active since late 2020, is a first-stage downloader that’s capable of delivering a wide range of secondary payloads such as Cobalt
0 Comments
Mar 02, 2023Ravie LakshmananSoftware Security / CodingSec A malicious Python package uploaded to the Python Package Index (PyPI) has been found to contain a fully-featured information stealer and remote access trojan. The package, named colourfool, was identified by Kroll’s Cyber Threat Intelligence team, with the company calling the malware Colour-Blind. “The ‘Colour-Blind’ malware points to
0 Comments
Mar 02, 2023The Hacker NewsBrowser Security As a primary working interface, the browser plays a significant role in today’s corporate environment. The browser is constantly used by employees to access websites, SaaS applications and internal applications, from both managed and unmanaged devices. A new report published by LayerX, a browser security vendor, finds that attackers
0 Comments
Mar 02, 2023Ravie LakshmananData Security / Cryptojacking Misconfigured Redis database servers are the target of a novel cryptojacking campaign that leverages a legitimate and open source command-line file transfer service to implement its attack. “Underpinning this campaign was the use of transfer[.]sh,” Cado Security said in a report shared with The Hacker News. “It’s possible
0 Comments
Mar 02, 2023Ravie LakshmananContainer Security / Cyber Threat A sophisticated attack campaign dubbed SCARLETEEL is targeting containerized environments to perpetrate theft of proprietary data and software. “The attacker exploited a containerized workload and then leveraged it to perform privilege escalation into an AWS account in order to steal proprietary software and credentials,” Sysdig said in
0 Comments
Canada on Monday announced a ban on Chinese-owned social media app TikTok from government-issued devices, saying it presents an “unacceptable” level of risk to privacy and security, adding to the growing rift between the two countries. The move underscores the growing lobby against TikTok, owned by Chinese firm ByteDance, over concerns of its proximity to
0 Comments
Microblogging site Twitter faced an outage on Wednesday with several users, including those in India, reporting issues with refreshing their newsfeeds or posting new content on the website. The service, which went down at around 4 pm resumed after a short while. According to the outage monitoring website, Downdetector, affected regions in India included major
0 Comments
Social messaging platform WhatsApp on Wednesday said it banned over 2.9 million accounts in the country in month of January to “combat abuse.” “WhatsApp is an industry leader in preventing abuse, among end-to-end encrypted messaging services,” a spokesperson of the social messaging platform said. In order to keep “our users safe on our platform,” WhatsApp
0 Comments