article thumbnail

Nation-State Hackers Exploit Windows Shortcut Zero-Day Vulnerability

SecureWorld News

These groups are using the exploit to conduct cyber espionage and financial crimes, particularly targeting cryptocurrency platforms and sensitive government data. Nation-state actors leverage the zero-day Trend Micro's analysis revealed that the vulnerability has been exploited by nation-state actors from North Korea, Iran, Russia, and China.

article thumbnail

Security Affairs newsletter Round 498 by Pierluigi Paganini – INTERNATIONAL EDITION

Security Affairs

CISA adds Palo Alto Networks Expedition bugs to its Known Exploited Vulnerabilities catalog Hackers target critical flaw CVE-2024-10914 in EOL D-Link NAS Devices China-linked threat actors compromised multiple telecos and spied on a limited number of U.S.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Happy 13th Birthday, KrebsOnSecurity!

Krebs on Security

You just knew 2022 was going to be The Year of Crypto Grift when two of the world’s most popular antivirus makers — Norton and Avira — kicked things off by installing cryptocurrency mining programs on customer computers. The now-defunct and always phony cryptocurrency trading platform xtb-market[.]com,

article thumbnail

MuddyWater Targets Turkey 

Heimadal Security

Its primary targets include government and educational institutions, as well as cryptocurrency, telecommunications, and oil companies. MuddyWater Advanced Persistent Threat (APT) is also known as Static Kitten, Seedworm, Mercury, and is famous for its attacks in the Middle East.

article thumbnail

T-Mobile customers were hit with SIM swapping attacks

Security Affairs

The telecommunications giant T-Mobile disclosed a data breach after some of its customers were apparently affected by SIM swap attacks. The telecommunications provider T-Mobile has disclosed a data breach after it became aware that some of its customers were allegedly victims of SIM swap attacks.

Mobile 133
article thumbnail

Privacy Roundup: Week 12 of Year 2025

Security Boulevard

but given the Salt Typhoon breach and the apparent lackluster security practices and culture at just about every American telecommunications company, this was too interesting to ignore. Cape is a mobile carrier startup claiming to provide a more secure and private service alternative to traditional telecommunications services.

article thumbnail

The Crypto Game of Lazarus APT: Investors vs. Zero-days

SecureList

Attackers’ accounts on X One of the tactics used by the attackers was to contact influential figures in the cryptocurrency space to get them to promote their malicious website and most likely to also compromise them.