Supply chain blunder puts 3CX telephone app users at risk
Booby-trapped app, apparently signed and shipped by 3CX itself after its source code repository was broken into.
Stay updated with breaking news from Sophoslabs Github. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
Booby-trapped app, apparently signed and shipped by 3CX itself after its source code repository was broken into.
Researchers from two security outfits have observed malware campaigns abusing Microsoft’s OneNote application since the software giant began blocking macros by default last year.
minute read Share this article: Threat actors targeted compromised Exchange servers to host malicious Monero cryptominer in an “unusual attack,” Sophos researchers discovered. Cryptojacking can be added to the list of threats that face any unpatched Exchange servers that remain vulnerable to the now-infamous ProxyLogon exploit, new research has found. Researchers discovered the threat actors using Exchange servers compromised using the highly publicized exploit chain—which suffered a barrage of attacks from advanced persistent threat (APT) groups to infect systems with ever...
Gootloader is delivering malicious payloads through tightly targeted operations in the US, Germany and South Korea, according to Sophos.
MrbMiner is a cryptominer that targets internet-facing database servers