| Date | Title | Description |
| 11.08.2026 | Private APNs FBI Recommends for OT Security Exploited to Bridge Unrelated Polish Energy Sites | By Jerry Owens
Published: Aug 11 2026, 11:10 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 06.08.2026 | Ukraine Mandates Kupyna Cryptography to Purge Soviet Backdoor Risk From All New Digital Signatures | By Clayton Lewis
Published: Aug 06 2026, 3:21 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 10.07.2026 | Ransomware Used Microsoft-Signed Malicious Driver to Kill EDR: 10 Hosts Hit Before Encryption | By John Bright
Published: Jul 10 2026, 1:55 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 30.06.2026 | Russian Hackers Gamaredon Weaponize WinRAR Flaw for First Destructive Strike | By Shannon Harwood
Published: Jun 30 2026, 2:51 PM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 29.06.2026 | ESET takes part in global Operation Endgame to disrupt Amadey botnet and Stealc infostealer | DUBAI , DUBAI, UNITED ARAB EMIRATES, June 29, 2026 /EINPresswire.com/ -- ESET Research assisted in disrupting the Amadey botnet and the Stealc infostealer by providing technical analysis, infrastructure tracking, and affiliate-level insight... |
| 19.06.2026 | Ransomware Gang Builds Its Own EDR Killer: BYOVD Arsenal Hits 478 Victims | By Scott McCain
Published: Jun 19 2026, 06:10 AM EDT
Share on Facebook Share on Twitter Share on LinkedIn Share on Reddit Share on Flipboard |
| 27.02.2026 | Появился первый Android-вирус, который превращает Gemini в инструмент для взлома | Специалисты компании ESET обнаружили первый Android-троян, который использует для атаки искусственный интеллект. В процессе заражения инструмент PromptSpy обращается к облачной модели Google Gemini для анализа экрана жертвы.
Троян отправляе... |
| 24.02.2026 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — в Telegram нашли две новые схемы взлома аккаунтов и кражи денег, новый бэкдор Keenadu скрывается в прошивке Android и крадет данные, обнаружены уязвимости в расширениях VS Code, PromptSpy: троян, который блокирует своё уда... |
| 04.02.2026 | Теневой ИИ, двойное вымогательство, дипфейки, фишинг-вишинг и не только: киберпрогнозы-2026 | Привет, Хабр!
На прошлой неделе мы рассказали о мировых трендах IT и ИБ, сложившихся в 2025 году. Это важные тенденции, которые буду влиять на нас и наше будущее в ближайшие месяцы и годы. Каким видится это будущее, исходя из тенденций — ра... |
| 03.02.2026 | Fake dating app used as lure in spyware campaign targeting Pakistan, ESET Research discovers | DUBAI , DUBAI, UNITED ARAB EMIRATES, February 4, 2026 /EINPresswire.com/ -- ESET researchers have uncovered an Android spyware campaign leveraging romance scam tactics to target individuals in Pakistan. The campaign uses a malicious app pos... |
| 30.12.2025 | Número de vítimas de ransomware cresceu 40% em 2025, diz relatório | Malware que usa IA para gerar novas instruções pode se tornar um problema nos próximos anos (ilustração: Vitor Pádua/Tecnoblog)
Clique no play para ouvir a matéria
O melhor da tecnologia está no nosso canal no WhatsApp
Entre Agora Resumo
O ... |
| 24.12.2025 | ESET Research analyzed a critical flaw in Windows Imaging Component, which abuses JPG files | DUBAI , DUBAI, UNITED ARAB EMIRATES, December 24, 2025 /EINPresswire.com/ -- ESET researchers have examined CVE-2025-50165, a serious Windows vulnerability that theoretically grants remote code execution by opening a specially crafted JPG f... |
| 25.11.2025 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — вредоносные пакеты npm используют Adspect для кражи криптовалюты, новый дефект SonicWall SonicOS, новый ботнет на базе Node.js с управлением через блокчейн Ethereum, новый банковский троян Sturnus для Android, хакеры Plush... |
| 31.10.2025 | North Korean Lazarus group targets the drone sector in Europe, likely for espionage, ESET Research discovers | DUBAI , DUBAI, UNITED ARAB EMIRATES, October 31, 2025 /EINPresswire.com/ -- ESET researchers have recently observed a new instance of Operation DreamJob — a campaign that ESET tracks under the umbrella of North Korea-aligned Lazarus group —... |
| 08.10.2025 | Cybersecurity Starts With You: Lessons From Phishing, Ransomware, and Real-World Mistakes | Image: kjekol/Envato
Picture this: You open your inbox and see an urgent email from your CEO asking you to wire funds immediately. It looks real. The logo, the tone, even the signature line. It’s all spot on.
But here’s the catch: your CEO ... |
| 30.09.2025 | ESET Research: Russian FSB-linked Gamaredon and Turla team up to target high-profile Ukrainian entities | DUBAI , DUBAI, UNITED ARAB EMIRATES, September 30, 2025 /EINPresswire.com/ -- ESET Research has uncovered the first known cases of collaboration between Gamaredon and Turla. Both threat groups are associated with the main Russian intelligen... |
| 13.08.2025 | WinRAR Zero-Day Exploited by Russian-Linked Hackers RomCom and Paper Werewolf | Image: WhataWin/Adobe Stock
Cybersecurity researchers have identified an actively exploited flaw in WinRAR that attackers are using to plant long-term backdoors on targeted machines. The vulnerability, tracked as CVE-2025-8088, affects all ... |
| 30.06.2025 | ESET Threat Report: ClickFix fake error surges, spreads ransomware and other malware | DUBAI , DUBAI, UNITED ARAB EMIRATES, June 30, 2025 /EINPresswire.com/ -- ESET has released its latest Threat Report, which summarizes threat landscape trends seen in ESET telemetry and from the perspective of both ESET threat detection and ... |
| 20.03.2025 | ESET Research uncovers Operation AkaiRyū: China-aligned MirrorFace targets European diplomats using Expo 2025 as a lure | DUBAI, UNITED ARAB EMIRATES, March 20, 2025 /EINPresswire.com/ -- ESET researchers have detected cyberespionage activity carried out by the China-aligned MirrorFace APT group against a Central European diplomatic institute in relation to Ex... |
| 28.01.2025 | Security Week 2505: уязвимость в онлайн-сервисе Subaru | На прошлой неделе исследователь Сэм Карри поделился результатами очередного исследования, посвященного безопасности онлайн-сервисов в современных автомобилях. Вместе с коллегами он обнаружил (уже не в первый раз) крайне серьезную уязвимость... |
| 21.01.2025 | The Digital Rescue: How to Recover Deleted Messages and Media in Telegram | In the digital age, losing important data can feel like a shipwreck in a storm. One moment, everything is intact; the next, it’s gone. This is especially true for messaging apps like Telegram, where conversations and media can vanish in an ... |
| 20.01.2025 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — новый Linux-руткит, угрожающий серверам через Netfilter, уязвимость pam-u2f, позволяющая обойти аутентификацию без токена, обнаружение неэффективности UEFI Secure Boot против буткитов, а также обновления безопасности для R... |
| 20.01.2025 | Security Week 2504: безотверточная атака на шифрование в Windows | На прошлой неделе исследователь из компании Neodyme Томас Ломбертц опубликовал подробное описание атаки на штатную систему шифрования BitLocker в Windows. Томас исследовал защищенность штатной реализации BitLocker без дополнительных средств... |
| 12.01.2025 | The Rise of BlackLotus: A Deep Dive into UEFI Bootkits and the Git 2.48 Release | In the digital age, security is a fortress under constant siege. Cyber threats evolve, and so must our defenses. Two recent developments highlight this struggle: the emergence of the BlackLotus UEFI bootkit and the release of Git 2.48. Each... |
| 10.01.2025 | BlackLotus UEFI bootkit. Часть 2 | Приветствую вас, дорогие читатели! Сегодня мы продолжим изучать BlackLotus UEFI bootkit. В прошлой части мы рассмотрели темы:
В предыдущей части мы выполнили следующие шаги:
1. Подготовка тестового стенда.
2. Запуск CVE-2022-21894 (baton dr... |
| 30.12.2024 | ESET Threat Reports social media flooded is with deepfake scams and Formbook is now the No. 1 infostealer | DUBAI , DUBAI, UNITED ARAB EMIRATES, December 30, 2024 /EINPresswire.com/ -- ESET has released its latest Threat Report, which summarizes threat landscape trends seen in ESET telemetry and from the perspective of both ESET threat detection ... |
| 30.12.2024 | ESET Threat Reports social media is flooded with deepfake scams and Formbook is now the No. 1 infostealer | DUBAI, DUBAI, UNITED ARAB EMIRATES, December 30, 2024 /EINPresswire.com/ -- ESET has released its latest Threat Report, which summarizes threat landscape trends seen in ESET telemetry and from the perspective of both ESET threat detection a... |
| 16.12.2024 | Social media deepfake scams push fraudulent investment schemes | Social media has seen a 335 percent boom in new scams using deepfake videos and company-branded posts to lure victims into fraudulent investment schemes.
The latest threat report from ESET tracks these as HTML/Nomani, the countries with the... |
| 13.12.2024 | В тренде VM: под прицелом продукты Windows, Ubuntu Server, Zyxel и другие | Хабр, привет! Я Александр Леонов, ведущий эксперт PT Expert Security Center. Мы с командой аналитиков Positive Technologies каждый месяц исследуем информацию об уязвимостях, полученную из баз и бюллетеней безопасности вендоров, социальных с... |
| 06.12.2024 | The Cybersecurity Storm: A Wake-Up Call for America | In November 2024, the digital landscape trembled under the weight of a massive cyberattack. The U.S. found itself at the center of a storm, with Chinese hackers breaching the communications of major telecom giants like AT&T, Verizon, an... |
| 06.12.2024 | Топ новостей инфобеза за ноябрь 2024 года | Всем привет! Это наш традиционный дайджест интересных новостей ушедшего месяца. В ноябре закрутился сюжет вокруг прослушки телефонов политиков в США, а судебный разборки Whatsapp против Pegasus пролили свет на внутреннюю кухню разработчика ... |
| 02.12.2024 | Security Week 2449: «тренировочный» буткит для Linux | На прошлой неделе компания ESET сообщила об обнаружении буткита, конечной целью которого является атака систем на базе Linux. Задача любого буткита — выполнить вредоносный код до загрузки ядра системы. Это в теории обеспечивает широкие возм... |
| 02.12.2024 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — анализ первого загрузчика UEFI для Linux Bootkitty, фишинговые атаки на Rockstar 2FA PaaS, уязвимости Zero-day и Zero-click в браузерах Firefox и Windows, драйвер, дающий полный контроль над системой в Avast, и атаки на го... |
| 29.11.2024 | Proving Linux is not a safe sanctuary, ESET finds first Linux-targeting UEFI bootkit malware | Linux-based operating systems have long been heralded as being inherently more secure than Windows. Whether or not this is true is open to debate, as is the impact of user numbers on making an OS a target for malware writers.
A key security... |
| 27.11.2024 | ESET Research discovers WolfsBane, new Linux cyberespionage backdoor by China-aligned Gelsemium | DUBAI , DUBAI, UNITED ARAB EMIRATES, November 27, 2024 /EINPresswire.com/ -- ESET researchers have identified multiple samples of a Linux backdoor, which they named WolfsBane and attribute with high confidence to Gelsemium, a China-aligned ... |
| 22.11.2024 | Новый бэкдор WolfsBane: аналог Gelsemium для Linux от Gelsevirine | Исследователи ESET проанализировали ранее неизвестные бэкдоры Linux, связанные с известным вредоносным ПО для Windows группы Gelsemium.
Исследователи ESET обнаружили несколько образцов бэкдора Linux (их назвали WolfsBane), которые с высокой... |
| 29.10.2024 | New ransomware group Embargo uses toolkit that disables security solutions, ESET Research discovers | DUBAI, DUBAI, UNITED ARAB EMIRATES, October 29, 2024 /EINPresswire.com/ -- ESET researchers have discovered new tooling leading to the deployment of Embargo ransomware. Embargo is a relatively new group in the ransomware scene, first observ... |
| 15.10.2024 | Фальшивый аттач: Атаки на почтовые серверы Roundcube с использованием уязвимости CVE-2024-37383 | Roundcube Webmail – клиент для электронной почты с открытым исходным кодом, написанный на PHP. Обширный функционал, а также возможность удобного доступа к почтовым аккаунтам из браузера без необходимости установки полноценных почтовых клиен... |
| 14.10.2024 | Security Week 2442: криптомайнеры в результатах поиска | На прошлой неделе эксперты «Лаборатории Касперского» опубликовали подробный разбор вредоносной кампании, направленной в основном на русскоязычных пользователей. Ссылки на вредоносные программы продвигаются в результатах поиска, результатом ... |
| 21.09.2024 | BlackLotus UEFI bootkit. Часть 1 | Приветствую вас, дорогие читатели! Сегодня я хочу поделиться с вами своим опытом изучения BlackLotus UEFI bootkit. В этом исследование разберем следующие темы:
Подготовка тестового стенда.
Запуск CVE-2022-21894 (baton drop).
Компиляция payl... |
| 06.09.2024 | ESET Research: Spy group exploits WPS Office zero day; analysis uncovers a second vulnerability | DUBAI, DUBAI, UNITED ARAB EMIRATES, September 6, 2024 /EINPresswire.com/ -- ESET researchers discovered a remote code execution vulnerability in WPS Office for Windows (CVE-2024-7262). It was being exploited by APT-C-60, a South Korea-align... |
| 02.09.2024 | Топ-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — новая фишинговая атака Unicode QR Code Phishing, уязвимость для удаленного выполнения кода в WPS Office, уязвимость в маршрутизаторах TP-Link, ложные срабатывания защиты в Exchange Online, устранение критичных уязвимостей ... |
| 26.08.2024 | Security Week 2435: долгоживущие уязвимости в продуктах Microsoft | На прошлой неделе специалисты «Лаборатории Касперского» опубликовали отчет об эволюции уязвимостей в ПО за второй квартал 2024 года. Отчет основан на статистике из внешних источников и собственных данных компании. Особый интерес представляе... |
| 23.08.2024 | Malware usa NFC de celular Android para roubar dados de cartões | NFC do celular é capaz de ler cartões próximos (imagem: Emerson Alecrim / Tecnoblog)
Saiba mais sobre NFC no nosso canal no WhatsApp
Entre Agora
Um novo malware para Android chamado NGate usa o chip NFC de smartphones para clonar cartões, p... |
| 23.08.2024 | Cybercriminals Deploy New Malware to Steal Data via Android’s Near Field Communication (NFC) | Recent research by cybersecurity company ESET provides details about a new attack campaign targeting Android smartphone users.
The cyberattack, based on both a complex social engineering scheme and the use of a new Android malware, is capab... |
| 21.08.2024 | Novel technique allows malicious apps to escape iOS and Android guardrails | Enlarge
Getty Images reader comments 23
Phishers are using a novel technique to trick iOS and Android users into installing malicious apps that bypass safety guardrails built by both Apple and Google to prevent unauthorized apps.
Both mobil... |
| 20.08.2024 | ESET Research discovers financial fraud using novel phishing method tailored to Android and iPhone users | DUBAI, UNITED ARAB EMIRATES, August 20, 2024 /EINPresswire.com/ -- ESET Research discovered an uncommon type of phishing campaign targeting mobile users, and analyzed a case observed in the wild that targeted clients of a prominent Czech ba... |
| 09.08.2024 | StormBamboo Compromises ISP, Spreads Malware | New research from cybersecurity company Volexity revealed details about a highly sophisticated attack deployed by a Chinese-speaking cyberespionage threat actor named StormBamboo.
The threat actor compromised an ISP to modify some DNS answe... |
| 05.08.2024 | Mac and Windows users infected by software updates delivered over hacked ISP | Enlarge
Marco Verch Professional Photographer and Speaker reader comments 87
Hackers delivered malware to Windows and Mac users by compromising their Internet service provider and then tampering with software updates delivered over unsecure... |
| 02.08.2024 | Топ самых интересных CVE за июль 2024 года | ⚠ Внимание ⚠
Вся информация, представленная ниже, предназначена только для ознакомительных целей. Автор не несет ответственности за вред, который может быть причинен с помощью предоставленной им информации.
В этой подборке представлены самы... |
| 29.07.2024 | Security Week 2431: PKfail или утечка приватных ключей Secure Boot | На прошлой неделе компания BINARLY сообщила об утечке приватного ключа компании American Megatrends, который используется во множестве ноутбуков, компьютеров и серверов компаний Acer, Dell, GIGABYTE и Supermicro. Исследование BINARLY широко... |
| 19.07.2024 | Chinese HotPage browser injector is capable of replacing web content and opens the system to other vulnerabilities, ESET | DUBAI, DUBAI, UNITED ARAB EMIRATES, July 19, 2024 /EINPresswire.com/ -- ESET Research has discovered a sophisticated Chinese browser injector: a signed, vulnerable, ad-injecting driver from a mysterious Chinese company. This threat, which E... |
| 20.06.2024 | ESET Research: Arid Viper group targets Middle East again, poisons Palestinian app with AridSpy spyware | DUBAI, UNITED ARAB EMIRATES, June 20, 2024 /EINPresswire.com/ -- ESET researchers have identified five campaigns that employ trojanized apps to target Android users. Most likely carried out by the Arid Viper APT group, these campaigns start... |
| 17.05.2024 | ESET Research: Ebury botnet alive & growing; 400k Linux servers compromised for cryptocurrency theft and financial gain | DUBAI , DUBAI, UNITED ARAB EMIRATES, May 17, 2024 /EINPresswire.com/ -- ESET Research released today its deep-dive investigation into one of the most advanced server-side malware campaigns, which is still growing and has seen hundreds of th... |
| 27.04.2024 | ESET Research discovers eXotic Visit campaign, targeted attack via fake messaging apps, available on web and Google Play | DUBAI , DUBAI, UNITED ARAB EMIRATES, April 27, 2024 /EINPresswire.com/ -- ESET researchers have discovered an active espionage campaign targeting Android users with apps primarily posing as messaging services. While these apps offer functio... |
| 13.03.2024 | China-aligned Evasive Panda leverages religious festival to target and spy on Tibetans, ESET Research discovers | DUBAI, UNITED ARAB EMIRATES, March 13, 2024 /EINPresswire.com/ -- ESET researchers have discovered a cyberespionage campaign that, since at least September 2023, has been victimizing Tibetans via a targeted watering hole (also known as a st... |
| 26.02.2024 | How digital forensics unlocks the truth | DUBAI, UNITED ARAB EMIRATES, February 26, 2024 /EINPresswire.com/ -- Lucas Paus and Mario Micucci, the Security Researchers at ESET explain how to learn the cyber variety of CSI works, from sizing up the crime scene and hunting for clues to... |
| 16.02.2024 | Enterprise browsers could bring 2024's next security boost | Cybersecurity companies and investors are betting 2024 will finally be the year workplaces embrace browsers that come with enterprise-grade security baked in.
Why it matters: Ever since remote work took hold of corporate America in 2020, em... |
| 05.02.2024 | ESET Research discovers espionage apps on the attack in Pakistan, utilizing romance scams | DUBAI , DUBAI, UNITED ARAB EMIRATES, February 5, 2024 /EINPresswire.com/ -- ESET researchers have identified 12 Android espionage apps that share the same malicious code; six were available on Google Play. All the observed applications were... |
| 25.01.2024 | China-Backed Hackers Planted Spyware on Major Application Updates Since 2018 | Aldohn Domingo, Tech Times 25 January 2024, 09:01 pm |
| 22.12.2023 | ESET Threat Report: ChatGPT Name Abuses, Lumma Stealer Malware Increases, Android SpinOk SDK Spyware’s Prevalence | Cybersecurity company ESET released its H2 2023 threat report, and we’re highlighting three particularly interesting topics in it: the abuse of the ChatGPT name by cybercriminals, the rise of the Lumma Stealer malware and the Android SpinOk... |
| 07.12.2023 | SpyLoan Android Malware Infiltrates Google Play With 12 Million Downloads | Joseph Henry, Tech Times 07 December 2023, 12:12 pm
A surge in deceptive loan apps, bearing the seemingly innocuous name SpyLoan, has struck over 12 million Android users in 2023 through Google Play alone. The actual figure is likely higher... |
| 30.10.2023 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — критическая уязвимость в F5 BIG-IP, анализ уязвимостей в Citrix NetScaler ADC и NetScaler Gateway, новые образцы ВПО, использование XSS-уязвимости для атак на Roundcube Webmail и технический анализ многофункционального ВПО... |
| 27.10.2023 | New Cyberattack From Winter Vivern Exploits a Zero-Day Vulnerability in Roundcube Webmail | ESET researcher Matthieu Faou has exposed a new cyberattack from a cyberespionage threat actor known as Winter Vivern, whose interests align with Russia and Belarus. The attack focused on exploiting a zero-day vulnerability in Roundcube web... |
| 25.10.2023 | Winter Vivern Russian Hacking Group Exploits Zero-Day in Roundcube Webmail Software | Joseph Henry, Tech Times 25 October 2023, 04:10 pm
The threat actor known as Winter Vivern targeted Roundcube webmail software on Oct. 11, exploiting a zero-day vulnerability to gain unauthorized access to email messages. What is Winter Viv... |
| 25.10.2023 | Pro-Russia hackers target inboxes with 0-day in webmail app used by millions | Enlarge
Getty Images reader comments 18 with
A relentless team of pro-Russia hackers has been exploiting a zero-day vulnerability in widely used webmail software in attacks targeting governmental entities and a think tank, all in Europe, re... |
| 29.08.2023 | ТОП-5 ИБ-событий недели по версии Jet CSIRT | Сегодня в ТОП-5 — уязвимость в macOS Ventura, новая версия вредоносного ПО XLoader, набор инструментов группировки злоумышленников CosmicBeetle, вредоносная программа Whiffy Recon и ПО XWorm, представляющее угрозу для ОС Windows. Новости по... |
| 10.08.2023 | Belarus hackers target foreign diplomats with help of local ISPs, researchers say | Hackers with apparent links to the Belarusian government have been targeting foreign diplomats in the country for nearly 10 years, according to security researchers.
On Thursday, antivirus firm ESET published a report that details the activ... |
| 07.08.2023 | ChatGPT Security Concerns: Credentials on the Dark Web and More | Image: DIgilife/Adobe Stock
As artificial intelligence technology such as ChatGPT continues to improve, so does its potential for misuse by cybercriminals. According to BlackBerry Global Research, 74% of IT decision-makers surveyed acknowle... |
| 20.07.2023 | ESET Research follows the comeback of the infamous botnet Emotet, targeting mainly Japan and South Europe | DUBAI, DUBAI, UNITED ARAB EMIRATES, July 20, 2023/EINPresswire.com/ -- ESET Research has published a summary of what happened with the Emotet botnet since its comeback after a limited takedown. Emotet is a malware family active since 2014, ... |
| 22.06.2023 | Why Should You Encrypt Your Phone Data? | 0 shares
Share
Tweet
Pin
LinkedIn
Techniques to encrypt phone’s data are no longer exclusively for cryptography geniuses. Nowadays, encryption is a term tossed in various contexts, from professional industries and tech geeks to regular... |
| 30.05.2023 | Popular Android Screen Recording App Spies on Users, Steals Data—Researchers Claim | Jace Dela Cruz, Tech Times 30 May 2023, 07:05 am
In a recent discovery, researchers from ESET have revealed that a popular Android screen recording app, iRecorder - Screen Recorder, has been found to spy on users and steal data.
Initially a... |
| 30.05.2023 | PSA: Delete ‘iRecorder — Screen Recorder’ Android App | Popular Android app “iRecorder — Screen Recorder” was caught stealing users’ information months after being approved on the Play Store.
Cybersecurity firm ESET discovered that malicious code was introduced into iRecorder nearly a year after... |
| 29.05.2023 | Security Week 2322: практический пример атаки с использованием домена .zip | В середине мая открылась свободная регистрация имен в доменных зонах .ZIP и .MOV. Эти TLD вошли в список из сотен коммерческих доменных зон, обслуживанием которых занимаются частные компании. В данном случае регистратор, обслуживающий эти д... |
| 29.05.2023 | A popular Android app began secretly spying on its users months after it was listed on Google Play | A cybersecurity firm says a popular Android screen recording app that racked up tens of thousands of downloads on Google’s app store subsequently began spying on its users, including by stealing microphone recordings and other documents fro... |
| 27.05.2023 | ESET: приложение iRecorder Screen Recorder для Android тайно записывало звук и передавало на серверы разработчиков | Приложение для захвата экрана на Android iRecorder Screen Recorder записывало звук каждые 15 минут и в зашифрованном виде отправляло на сайт разработчиков, сообщил исследователь Essential Security Against Evolving Threats (ESET) Лукаса Стеф... |
| 25.05.2023 | Unearthed: CosmicEnergy, malware for causing Kremlin-style power disruptions | Enlarge
Getty Images reader comments 15 with
Researchers have uncovered malware designed to disrupt electric power transmission and may have been used by the Russian government in training exercises for creating or responding to cyberattack... |
| 25.05.2023 | Rogue screen recorder app found spying on Android users: How to safeguard yourself | Google, over the years, has strengthened its defenses and put in place strong guardrails for protecting its Android ecosystem from malware and other malicious apps and programs. Despite its best efforts, a harmful app often manages to slide... |
| 24.05.2023 | Legit app in Google Play turns malicious and sends mic recordings every 15 minutes | Enlarge
Getty Images reader comments 37 with
An app that had more than 50,000 downloads from Google Play surreptitiously recorded nearby audio every 15 minutes and sent it to the app developer, a researcher from security firm ESET said.
The... |
| 24.05.2023 | Google Play App 'iRecorder' Allow Phones to Record Nearby Audio Users Without Consent | Inno Flores, Tech Times 24 May 2023, 11:05 pm
A Google Play Store application recorded a minute of the users' screen every 15 minutes and forwarded it to the developers' servers through an encrypted link. The app started as an innocent scre... |
| 23.05.2023 | Как работает наша команда реагирования на инциденты и как стать таким же Суперменом | Типичная картина: компанию накрыла кибератака, данные утекли, а руководство бегает в огне, пытаясь, если не спасти, то хотя бы не ухудшить ситуацию. Судорожно вырываются из розеток штепсели компов, а ведь это довольно рискованное мероприяти... |
| 17.05.2023 | Malware turns home routers into proxies for Chinese state-sponsored hackers | Enlarge
Getty Images reader comments 39 with
Researchers on Tuesday unveiled a major discovery—malicious firmware that can wrangle a wide range of residential and small office routers into a network that stealthily relays traffic to command... |
| 15.05.2023 | Security Week 2320: патч Microsoft выключит старые загрузочные носители | В ближайшем будущем загрузочные диски и флешки с Windows могут перестать работать. Виной тому — патчи Microsoft для уязвимости, позволяющей обходить систему защиты Secure Boot. Проблему, обнаруженную еще в прошлом году, подробно описала ком... |
| 26.04.2023 | Advancing The Security Operations Center (SOC): New Technologies and Processes Can Help Mitigate Cyber Threats | In the System Monitoring Room Two Senior Operators Work on a Big Interactive Map. Facility is Full ... [+] of Screens Showing Technical Data.getty |
| 20.04.2023 | Исследование ESET: многие компании, продающие б/у роутеры, не удаляют с сетевых устройств рабочие конфиги | Эксперты компании ESET выяснили, что многие компании, продающие бывшие в употреблении роутеры, коммутаторы и интернет-шлюзы производства Cisco, Fortinet и Juniper, не заботятся об информационной безопасности и не удаляют хранящиеся на сетев... |
| 19.04.2023 | Used routers often come loaded with corporate secrets | Enlarge
aquatarkus/Getty Images reader comments 57 with
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
You know that you're supposed to wipe your smartphone or laptop before you resell it or give it to your cousin. Afte... |
| 13.04.2023 | What are the cybersecurity concerns of SMBs by sector? | DUBAI, UNITED ARAB EMIRATES, April 13, 2023/EINPresswire.com/ -- Some sectors have high confidence in their in-house cybersecurity expertise, while others prefer to enlist the support of an external provider to keep their systems and data s... |
| 06.03.2023 | Stealthy UEFI malware bypassing Secure Boot enabled by unpatchable Windows flaw | Enlarge
Aurich Lawson | Getty Images reader comments 143 with
Share this story
Share on Facebook
Share on Twitter
Share on Reddit
Researchers on Wednesday announced a major cybersecurity find—the world’s first-known instance of real-world m... |
| 03.03.2023 | BlackLotus Malware Is the First to Bypass Secure Boot | Computer security became a little more challenging, with the BlackLotus malware becoming the first to bypass Secure Boot.
Secure Boot is a method of signing the kernel and various boot components, ensuring that no malicious software can be ... |
| 27.02.2023 | UEFI уязвимость видишь? А она есть | Представьте себе вредоносное программное обеспечение, получающее полный доступ к системе, и которое почти невозможно обнаружить, а переустановка операционной системы или смена жесткого диска его не убивают. И это не что-то из области фантас... |
| 10.02.2023 | Digital rights defenders infiltrate alleged mercenary hacking group | Cooper Quintin has been tracking the activities of a cyber mercenary group called Dark Caracal for years. On July 28, 2022, he said he discovered traces of a new ongoing hacking campaign by the group in the Dominican Republic and Venezuela.... |
| 17.01.2023 | ESET Research discovers StrongPity APT group’s espionage campaign targeting Android users with trojanized Telegram app | DUBAI, UNITED ARAB EMIRATES, January 17, 2023 /EINPresswire.com/ -- ESET researchers identified an active StrongPity APT group campaign leveraging a fully functional but trojanized version of the legitimate Telegram app, which despite being... |
| 09.12.2022 | 7 cybersecurity threats to watch out for in 2023 | Sohini Bagchi 9 Dec, 2022
Cybersecurity is undoubtedly one of the biggest pain points for organisations. While, we've seen that cyber security as a topic has gradually moved from the IT department to the boardroom in recent times, bad news ... |
| 08.12.2022 | North Korean hackers once again exploit Internet Explorer’s leftover bits | Enlarge / APT37, a group believed to be backed by the North Korean government, has found success exploiting the bits of Internet Explorer still present in various Windows-based apps.
Aurich Lawson | Getty Images reader comments 26 with 0 po... |
| 30.11.2022 | Russia-backed Sandworm group using novel RansomBoggs ransomware to target Ukrainian organisations | A novel strain of ransomware known as RansomBoggs is being used by Russian state-sponsored threat operation Sandworm in a new wave of attacks hitting Ukrainian organisations.
These attacks were first noticed on November 21, 2022, according ... |
| 21.11.2022 | FIFA World Cup 2022: Beware of these cyberattacks, scams | Sohini Bagchi 21 Nov, 2022
The wait is finally over as the Federation Internationale de Football Association (FIFA) World Cup 2022 has just kicked-off in Qatar this week from November 20. However, security experts are warning football fans ... |
| 14.11.2022 | Security Week 2246: UEFI-уязвимость в ноутбуках Lenovo | На прошлой неделе компания Lenovo выпустила обновление UEFI BIOS для более чем 50 модификаций ноутбуков. Патчи закрывают две из трех уязвимостей, которые позволяют обойти или отключить систему безопасности Secure Boot. В худшем случае подоб... |
| 11.11.2022 | Researchers warn of surge in online scams ahead of FIFA World Cup 2022 | Sohini Bagchi 11 Nov, 2022
With only ten days to go for the FIFA World Cup 2022 in Qatar to begin, online fraudsters are looking to invariably leverage the ‘buzz’ to defraud sports lovers and those looking for information, tickets or news. ... |
| 10.11.2022 | SMB's security spending is not keeping up with threats | A survey of over 1,200 cybersecurity decision-makers from small and medium-sized businesses in Europe and North America shows 74 percent believe that they are more vulnerable to cyberattacks than enterprises.
The study from ESET also reveal... |
| 18.10.2022 | Digital security for the new entrepreneur | Steve Flynn, Sales and Marketing Director at ESET Southern Africa.
The pandemic fundamentally changed the working world forever. Not only are more employees working remotely, but more people are starting their own businesses – often from ho... |