📰 Malware Removal News
Page 4 - Malware Removal News Today
Fast, Ad-Free News Updates
Stay updated with breaking news from Malware Removal. Real-time updates on events, politics, business and more.
March 2, 2021
Malicious NPM packages target Amazon, Slack with new dependency attacks By 12:14 AM Threat actors are targeting Amazon, Zillow, Lyft, and Slack NodeJS apps using a new Dependency Confusion vulnerability to steal Linux/Unix password files and open reverse shells back to the attackers. Last month, BleepingComputer reported that security researcher Alex Birsan earned bug bounties from 35 companies by utilizing a new flaw in open-source development tools. This flaw works by attackers creating pa...
February 27, 2021
American telecommunications provider T-Mobile has disclosed a data breach after an unknown number of customers were apparently affected by SIM swap attacks.
February 26, 2021
Dutch Research Council (NWO) confirms ransomware attack, data leak By 01:30 PM The recent cyberattack that forced the Dutch Research Council (NWO) to take its servers offline and suspend grant allocation processes was caused by the DoppelPaymer ransomware gang. The hackers gained access to NWO’s network on February 8 and stole internal documents, threatening with leaking them unless the organization paid a ransom. No dime for DoppelPaymer Since NWO does not cooperate with cybercriminals, Dop...
February 25, 2021
Cisco fixes maximum severity MSO auth bypass vulnerability By 04:03 PM Cisco has addressed a maximum severity authentication bypass vulnerability found in the API endpoint of the Cisco ACI Multi-Site Orchestrator (MSO) installed on the Application Services Engine. Cisco ACI MSO is an intersite network and policy orchestration solution that helps admins monitor the health of their organizations interconnected sites across multiple data centers. Impacts only MSO 3.0 releases "A vulnerability in ...
February 24, 2021
Business jet maker Bombardier is the latest company to suffer a data breach by the Clop ransomware gang after attackers exploited a zero-day vulnerability to steal company data.
February 23, 2021
Twitter has removed dozens of accounts connected to Russian government-backed actors disseminating disinformation and targeting the European Union, the United States, and the NATO alliance.
February 19, 2021
RIPE NCC is warning members that they suffered a credential stuffing attack attempting to gain access to single sign-on (SSO) accounts.
February 19, 2021
Microsoft announced today that the SolarWinds hackers could gain access to source code for a limited amount of components used by Azure, Intune, and Exchange.
February 18, 2021
Microsoft force installs Windows 10 update to remove Flash Player By Microsoft is force installing a Windows 10 update that removes the embedded 32-bit version of Adobe Flash Player from the operating system. In October, we reported that Microsoft had released the KB4577586 optional update to remove the embedded 32-bit Flash Player from Windows and prevent it from being installed again. 32-bit Flash shown in Windows 10 Control Panel This update was only available from the Microsoft Catalog,...
February 18, 2021
US shares info on North Korean malware used to steal cryptocurrency By 10:25 AM The FBI, CISA, and US Department of Treasury shared detailed info on malicious and fake crypto-trading applications used by North Korean-backed state hackers to steal cryptocurrency from individuals and companies worldwide in a joint advisory published on Wednesday. These cryptocurrency trading apps were developed and injected with AppleJeus malware by a DPRK state-sponsored threat actor known as Lazarus Group (...