ThreatCluster
  • Feed
  • Saved
THREAT HUNTING
  • Domains
  • IP Addresses
  • File Hashes
  • CVEs
THREAT INTELLIGENCE
  • APT Groups
  • Ransomware Groups
  • Malware Families
  • Attack Types
  • MITRE ATT&CK
  • Security Standards
  • Vulnerability Types
BUSINESS INTELLIGENCE
  • Companies
  • Industry Sectors
  • Security Vendors
  • Government Agencies
  • Countries
  • Platforms
Home / Feed / Article

Beware of Fake Error Pages Deploying Platform-Specific Malware on Linux and Windows Systems

Threat Score:
47
GB Hackers
1 day ago
Part of cluster #1378

Overview

Beware of Fake Error Pages Deploying Platform-Specific Malware on Linux and Windows Systems Wiz Research has uncovered an active cryptomining campaign, dubbed Soco404, that exploits misconfigurations in PostgreSQL databases and other cloud services to deploy platform-specific malware on both Linux and Windows systems. This operation, part of a broader crypto-scam infrastructure, leverages opportunistic scanning for exposed services, abusing features like PostgreSQL’s COPY FROM PROGRAM for remote...

Continue Reading on Original Site

Related Articles

5 articles
1
Allianz Life confirms data breach impacts majority of 1.4 million customers

Allianz Life confirms data breach impacts majority of 1.4 million customers

BleepingComputer • 9 hours ago

Allianz Life confirms data breach impacts majority of 1.4 million customers Lawrence Abrams July 26, 2025 02:00 PM 0 Insurance company Allianz Life has confirmed that the personal information for the "majority" of its 1.4 million customers was exposed in a data breach that occurred earlier this month. "On July 16, 2025, a malicious threat actor gained access to a third-party, cloud-based CRM system used by Allianz Life Insurance Company of North America (Allianz Life)," an Allianz Life spokesper

Score
71
Read more
2

From Friction to Function: Optimising Onboarding in an Age of AML, AI and Rising Risk

Finextra Security • 12 hours ago

From Friction to Function: Optimising Onboarding in an Age of AML, AI and Rising Risk Join this webinar, hosted in association with nCino, to the challenges of commercial onboarding, particularly in the context of increasing regulations like the EU AML Directive and an emphasis on the importance of data strategy, AI, and streamlining Client Lifecycle Management (CLM). How can banks scale AML compliance in an increasingly complex and high-risk environment without compromising the commercial clien

Score
68
Read more
3

Microsoft Patches ‘ToolShell’ Zero-Days Exploited to Hack SharePoint Servers

SecurityWeek • 5 days ago

Microsoft has started releasing updates to fix the exploited SharePoint zero-days tracked as CVE-2025-53770 and CVE-2025-53771.

Score
68
Read more
4

Exploited CrushFTP Zero-Day Provides Admin Access to Servers

SecurityWeek • 5 days ago

Hackers are exploiting a zero-day vulnerability in CrushFTP to gain administrative privileges on vulnerable servers via HTTPS.

Score
67
Read more
5

Google, Microsoft say Chinese hackers are exploiting SharePoint zero-day

TechCrunch • 4 days ago

The tech giants have evidence that Chinese hackers are exploiting the new bug, but warned "multiple actors" are also hacking into affected SharePoint systems.

Score
66
Read more

Save to Folder

Choose a folder to save this article:

Article Intelligence

Key entities and indicators for this article

CVES
CVE-2025-24813
DOMAINS
ld.so
seeyoume.top
soco.sh
FILE PATH
C:\Users\Public.
ATTACK TYPES
Cryptojacking
Phishing
Ransomware
Remote Code Execution
Social Engineering
INDUSTRIES
Banking
Education
Mining
VULNERABILITIES
DDoS
DoS
Remote Code Execution
COMPANIES
AMD
Adobe
Amazon
Apple
Cisco
SECURITY VENDORS
Cloudflare
Wiz
PLATFORMS
AWS
Android
Apache
Azure
IIS
RANSOMWARE
AnDROid
DN
Korean
One
Zlader
MITRE ATT&CK
Masquerading
Phishing
T1036.005
T1053.003
T1070.002
MALWARE
Dark
Dark Shades
Rogue
DOMAINS
soco.sh
ld.so
seeyoume.top
ARTICLE INFORMATION
Article #4947
Published 1 day ago
GB Hackers