Remove Antivirus Remove Blog Remove Information Security Remove Phishing
article thumbnail

North Korea-linked Zinc group posed as Samsung recruiters to target security firms

Security Affairs

North Korea-linked threat actors posed as Samsung recruiters in a spear-phishing campaign aimed at employees at South Korean security firms. According to the Google Threat Horizons report, the state-sponsored hackers sent fake job offers to employees at the security companies. . ” reads the Google Threat Horizons report.

Malware 125
article thumbnail

DEV-0569 group uses Google Ads to distribute Royal Ransomware

Security Affairs

The DEV-0569 group carries out malvertising campaigns to spread links to a signed malware downloader posing as software installers or fake updates embedded in spam messages, fake forum pages, and blog comments. ” reads the report published by Microsoft. ” concludes the IT giant.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

BRATA Android Malware evolves and targets the UK, Spain, and Italy

Security Affairs

These two permissions allows the operators to receive and read the victim’s sms while performing a phishing attack and takeover the victims’ account. ” Security Affairs is one of the finalists for the best European Cybersecurity Blogger Awards 2022 – VOTE FOR YOUR WINNERS. ” concludes the report. Pierluigi Paganini.

Malware 97
article thumbnail

Vietnam-linked Bismuth APT leverages coin miners to stay under the radar

Security Affairs

New blog: The threat actor BISMUTH, which has been running increasingly complex targeted attacks, deployed coin miners in campaigns from July to August 2020. Learn how the group tried to stay under the radar using threats perceived to be less alarming: [link] — Microsoft Security Intelligence (@MsftSecIntel) November 30, 2020. .”

article thumbnail

Cyber Security Roundup for April 2021

Security Boulevard

roundup of UK focused Cyber and Information Security News, Blog Posts, Reports and general Threat Intelligence from the previous calendar month, March 2021. conduct employee phishing tests. conduct employee phishing tests. Also, see the blog post - The Ransomware Group Tactics which Maximise their Profitability.

article thumbnail

Brazilian trojan impacting Portuguese users and using the same capabilities seen in other Latin American threats

Security Affairs

The trojan has been disseminated via phishing templates impersonating Tax services in Portugal. Phishing wave. At this moment, the infection chain is able to bypass the antivirus detection, with the latter EXE ( WpfApp14.exe Figure 1 below illustrates the high-level diagram of this new variant and how it operates. Key findings.

Banking 88
article thumbnail

Latin American Javali trojan weaponizing Avira antivirus legitimate injector to implant malware

Security Affairs

Latin American Javali trojan weaponizing Avira antivirus legitimate injector to implant malware. The malicious activity starts with a phishing email sent to the target victims in Latin American – Brazil, Mexico, Chile, and Peru – and Europe – Spain and Portugal. In short, the phishing email is received by victims.

Antivirus 118