CoinMiner malware is being spread through USB drives in South Korea, utilizing malicious shortcut files to execute VBS scripts that deploy BAT malware. This attack campaign aims to compromise workstations by…
A coordinated phishing campaign is targeting Microsoft Teams users by exploiting the platform's notification system. This method allows attackers to bypass traditional security measures, increasing the risk for users…
Threat actors are distributing CoinMiner malware through USB drives, targeting workstations. This malware infection can lead to unauthorized cryptocurrency mining, affecting organizational resources. The attack method…
Recent guidance has been issued to mitigate risks associated with bulletproof hosting providers, which are often used by cybercriminals to host malicious content. This guidance comes from cybersecurity authorities,…
Researchers have identified a critical vulnerability class named 'PromptPwnd' that affects AI agents in GitHub Actions and GitLab CI/CD pipelines. This vulnerability allows attackers to inject malicious prompts through…
CISA, along with international partners, has released guidance to help internet service providers (ISPs) combat bulletproof hosting (BPH) services that facilitate cybercrime, including ransomware and phishing attacks.…