๐จ Malware for $100? Cybercrime is cheaper than you think.
A forum ad promotes a fully undetectable shellcode loader for just $100. Add $5 for a server, and youโre set to launch attacks.
๐ก Businesses must enhance detection with AI tools & educate teams. Cyber resilience is key!
๐จ Fake installers spreading #malware!
Attackers use YouTube & social media to share links for fake apps, hosting malware on sites like Mega. These steal sensitive browser data via stealthy process injection.
Stay safe: download only from trusted sources!
๐จ 35M #Italian phone numbers & names leaked on hacker forum
๐ Extracted from the 2021 #Facebook leak.
โ ๏ธ Risks:
#Phishing scams
Targeted fraud
#SMS-based attacks
๐ Stay alert for suspicious messages or calls. Donโt share personal info.
#DataLeak#CyberSecurity#Italy
๐จ Critical bug in #Windows 11 24H2 blocks security updates!
๐ Affected: Installs using media with Oct/Nov 2024 security updates.
โ No impact on Windows Update installs.
๐ง Fix:
Avoid outdated media.
Use Dec 2024 update or later.
Reinstall with updated media if needed.
๐จ Claim of #Italy Police Data Leak ๐จ
A Telegram channel claims to sell Italian police documents, often linked to major #databreaches.
๐ Details unverified, but if true, this could be a critical security incident.
#CyberSecurity#InfoSec
๐จ CVE-2024-49112: Critical #Windows LDAP Flaw
#Microsoft fixes an RCE vulnerability (CVSS 9.8) in LDAP, exposing networks to major risk.
Affects Windows 10/11 & Server versions.
Exploitable via crafted LDAP requests.
Patch now to secure #Domain#Controllers!
#CyberSecurity
๐จ Critical vulnerabilities in #Volkswagen Group cars
12 flaws in #MIB3 infotainment systems allow attackers to:
Track GPS in real-time
Execute remote code
Access contacts, record conversations
#VW confirms fixes underway. Update systems now!
#CyberSecurity#AutomotiveSecurity
๐จ NoviSpy spyware targets journalists & activists in Serbia using Qualcomm zero-day flaws (e.g., CVE-2024-43047).
๐ Installs via zero-click VoLTE calls
๐ Targets Android kernel persistently
โ ๏ธ Patch devices now to mitigate!
#CyberSecurity#Spyware#ZeroDay
๐จ 390K+ WordPress credentials stolen via malicious GitHub repo targeting security researchers & red teamers.
๐ด Victims lost SSH keys, AWS creds, & more
๐ Avoid fake PoCs & validate repositories
โ ๏ธ Check system integrity for miners & leaks
#CyberSecurity#DataBreach#GitHub
๐จ convoC2: a new red team tool to execute system commands via #MicrosoftTeams
๐น Commands embedded in span tags
๐น Outputs hidden in Adaptive Cards URLs
๐น Operates via MS servers, bypassing AV
โ ๏ธ Use ethically! Blue teams must monitor Teams logs closely. #CyberSecurity
๐จ New #Windows#ZeroDay (CVE-2024-38193) actively exploited!
This use-after-free bug in afd.sys allows privilege escalation to SYSTEM.
Lazarus linked to attacks using malware FudModule. PoC published on GitHub.
๐ก Patch now: August 2024 updates available. #CyberSecurity