Gmail accounts are used in 91% of all baiting email attacks
Bait attacks are on the rise, and it appears that actors who distribute this special kind of phishing emails prefer to use Gmail accounts to conduct their attacks.
https://t.co/U8KrlRPHvg
New Android malware targets Netflix, Instagram, and Twitter users
A new Android malware known as MasterFred uses fake login overlays to steal the credit card information of Netflix, Instagram, and Twitter users.
https://t.co/2yl71Nzcqf
< Nov. 2021 Patch Tuesday >
Microsoft releases security patches for 55 new vulnerabilities, including two actively exploited zero-day flaws in Excel (CVE-2021-42292) and Exchange Server (CVE-2021-42321).
Read Details: https://t.co/tf3a527Xgr
Researchers have discovered 14 new critical vulnerabilities affecting the BusyBox utility, the Swiss Army knife for Linux-based embedded devices.
Read details: https://t.co/BJjThJeZFQ
US sanctions Chatex cryptoexchange used by ransomware gangs
The US Treasury Department announced today sanctions against the Chatex cryptocurrency exchange for helping ransomware gangs evade sanctions and facilitating ransom transactions. [...]
https://t.co/hhvwLXq2tg
Cybersecurity firm Palo Alto Networks warned over the weekend of an ongoing hacking campaign that has already resulted in the compromise of at least nine organizations worldwide from critical sectors, including defense, healthcare, energy...
https://t.co/3DTRuwFiPs
Operation Cyclone deals blow to Clop ransomware operation
A thirty-month international law enforcement operation codenamed 'Operation Cyclone' targeted the Clop ransomware gang, leading to the previously reported arrests of six members in Ukraine. [...]
https://t.co/C0jrP0pp4B
Two popular NPM packages— "coa" and "rc" —with a cumulative weekly download of nearly 22 million have been found to be backdoored with malicious password-stealer code in another instance of a supply-chain attack.
Read: https://t.co/NpPJpiYVLi
Cisco has released security patches for flaws affecting multiple products, the most critical of which are:
—CVE-2021-40119: Hardcoded SSH Keys Bug in Policy Suite.
—Multiple flaws affecting Cisco Catalyst PON Series Switches ONT.
Read: https://t.co/yfgqnfC16W