A mass exploitation campaign targets ISPs in China and the U.S. West Coast, affecting over 4,000 IPs with brute-force attacks and malware, including crypto miners and info stealers.
Cybercriminals bypass security and steal data using PowerShell and Telegram.
Read here: https://t.co/yobaCxZw8o
🚨 ALERT: Cybercriminals are hijacking ESXi systems to tunnel traffic and remain hidden on networks for extended periods.
Native tools like SSH allow attackers to blend in with legitimate traffic, bypassing detection and making it nearly impossible to spot them.
Read: https://t.co/tWXRoflaRg
Starting with today's build, Windows 11 lets admins block NTLM over SMB to thwart pass-the-hash, NTLM relay, or password-cracking attacks - @serghei
https://t.co/Y7ACMUDIys
Russian journalist Galina Timchenko's #iPhone was hacked with NSO Group's #Pegasus spyware, using a zero-click exploit known as PWNYOURHOME.
Read: https://t.co/U6sUqUnpa3
#infosec#cybersecurity
Microsoft SQL Servers under attack! Threat actors use brute force to deliver FreeWorld #ransomware.
Are your passwords strong enough?
Read: https://t.co/FK7IOPk6CB
#cybersecurity#hacking
⚠️ Urgent: Adobe's September 2023 update addresses a new zero-day #vulnerability (CVE-2023-26369) in Acrobat and Reader that attackers are exploiting in the wild.
Read: https://t.co/5Kz5TRu166
#cybersecurity#informationsecurity
New scraped data: Duolingo had 2.6M records scraped from a vulnerable API earlier this year and posted to a hacking forum today. Data included name, email, username and learning progress. 100% were already in @haveibeenpwned. Read more: https://t.co/fR3d9rPody