• Skip to primary navigation
  • Skip to main content
GreyKeep Security logo

GreyKeep Security

Expert security for an evolving digital age

  • Services
  • Our Approach
  • Blog
  • About
  • Contact Us
  • Show Search
Hide Search

Weekly Malware Roundup – January 8, 2024

greykeep · January 9, 2024 ·

GreyKeep Security Malware Roundup - September 5, 2023

This is the GreyKeep Security Malware Roundup for January 8, 2024. Here’s a summary of what’s in this week’s edition:

Targets

iPhone
MacOS
Android
Chromium
Windows
MSIX App Installer
Python / PyPI

Organizations

Banking industry
US infrastructure
Ukraine government
Xerox
Orange Spain
loanDepot
Capital Health
Toronto Zoo

Threat Actors

Lazarus (N. Korea)
Fancy Bear / APT28 (Russia)
Sandworm (Russia)
UAC-0050
Kimsuky (N. Korea)
Sea Turtle (Turkey)
Anonymous Arabic (Syria)
GXC Team
[Read more…] about Weekly Malware Roundup – January 8, 2024

Cybersecurity Daily: January 4, 2024

greykeep · January 4, 2024 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for January 4, 2024.

Alerts & Advisories

  • Google Patches Six Vulnerabilities With First Chrome Update of 2024
  • Google Cloud Resolves Privilege Escalation Flaw Impacting Kubernetes Service
  • ‘Operation Triangulation’ Spyware Attackers Bypass iPhone Memory Protections
  • Microsoft disables online Windows App Installer after attackers abuse it
  • New Variant of DLL Search Order Hijacking Bypasses Windows 10 and 11 Protections
  • Attackers Abuse Google OAuth Endpoint to Hijack User Sessions
  • 650,000+ Malicious Domains Registered Resembling ChatGPT
  • Hacked Mandiant X Account Abused for Cryptocurrency Theft
  • Apache ERP Zero-Day Underscores Dangers of Incomplete Patches
  • Ivanti warns critical EPM bug lets hackers hijack enrolled devices
  • ‘everything’ blocks devs from removing their own npm packages
  • Over 1800 global banking apps targeted by 29 malware variants
  • Experts found 3 malicious packages hiding crypto miners in PyPi repository
[Read more…] about Cybersecurity Daily: January 4, 2024

Weekly Malware Roundup – November 13, 2023

greykeep · November 13, 2023 ·

GreyKeep Security Malware Roundup - September 5, 2023

This is the GreyKeep Security Malware Roundup for November 13, 2023. Here’s a summary of what’s in this week’s edition:

Targets

Windows / PowerShell
Linux
MacOS
Android
Google Calendar / Cloud
Atlassian Confluence
Python / PyPI
MOVEit
WinRAR

Organizations

Boeing
Cogdell Memorial Hospital
Isreali Tech Sector
Indian Government
Ukranian Power Grid
Cambodian Government
Fashion Industry
DP World

Threat Actors

BlueNoroff / Lazarus
CIOp
LockBit
Lorenz
Imperial Kitten
Ryuk Ransomware Group
SideCopy
Sandworm
Farnetwork
Saphire Sleet
BulletProofLink
Royal
[Read more…] about Weekly Malware Roundup – November 13, 2023

Cybersecurity Daily: November 2, 2023

greykeep · November 2, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for November 2, 2023.

Alerts & Advisories

  • Alert: F5 Warns of Active Attacks Exploiting BIG-IP Vulnerability
  • Urgent: New Security Flaws Discovered in NGINX Ingress Controller for Kubernetes
  • Critical Atlassian Confluence flaw can lead to significant data loss
  • Microsoft Temporarily Disables SketchUp Support After Discovery of 117 Vulnerabilities
  • Researchers Find 34 Windows Drivers Vulnerable to Full Device Takeover
  • Cisco Patches 27 Vulnerabilities in Network Security Products
  • New malware campaign uses MSIX packages to infect Windows PCs
  • Safari Side-Channel Attack Enables Browser Theft
  • Hackers Weaponize HWP Documents to Attack Defense and Press Sectors
  • Google Dynamic Search Ads Abused to Unleash Malware ‘Deluge’
  • UAE Cyber Council Warns of Google Chrome Vulnerability
  • Elektra-Leak’ Attackers Harvest AWS Cloud Keys in GitHub Campaign
  • New macOS ‘KandyKorn’ malware targets cryptocurrency engineers
  • Critical Apache ActiveMQ Vulnerability Exploited to Deliver Ransomware
  • Cisco AnyConnect SSL VPN Flaw Let Remote Attacker Launch DoS Attack
  • Researchers Uncover Wiretapping of XMPP-Based Instant Messaging Service
[Read more…] about Cybersecurity Daily: November 2, 2023

Cybersecurity Daily: October 12, 2023

greykeep · October 12, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for October 12, 2023.

Alerts & Advisories

  • Apple fixes iOS Kernel zero-day vulnerability on older iPhones
  • Backdoor Malware Found on WordPress Website Disguised as Legitimate Plugin
  • HTTP/2 Rapid Reset Zero-Day Vulnerability Exploited to Launch Record DDoS Attacks
  • Adobe Acrobat Reader Vuln Now Under Attack
  • Microsoft Warns of Nation-State Hackers Exploiting Critical Atlassian Confluence Vulnerability
  • Microsoft Patch Tuesday updates for October 2023 fixed three actively exploited zero-day flaws
  • Citrix Devices Under Attack: NetScaler Flaw Exploited to Capture User Credentials
  • Google Chrome Use-after-free Flaw Let Attackers Perform Heap Exploitation
  • LinkedIn Smart Links Abused in Phishing Campaign Targeting Microsoft Accounts
  • Malicious NuGet Package Targeting .NET Developers with SeroXen RAT
  • One-Click ‘Gnome’ Exploit Is a Supply Chain Risk for Linux OSes
  • Looney Tunables’ Linux Flaw Sees Snowballing Proof-of-Concept Exploits
  • High-Severity Flaws in ConnectedIO’s 3G/4G Routers Raise Concerns for IoT Security
  • Patch Now: Massive RCE Campaign Wrangles Routers Into Botnet
  • Ransomware attacks now target unpatched WS_FTP servers
  • A new Magecart campaign hides the malicious code in 404 error page
[Read more…] about Cybersecurity Daily: October 12, 2023
  • « Go to Previous Page
  • Page 1
  • Page 2
  • Page 3
  • Page 4
  • Interim pages omitted …
  • Page 9
  • Go to Next Page »

How can we help you become more secure? Contact Us

GreyKeep Security

© 2025 GreyKeep Security LLC · All Rights Reserved

  • Services
  • Our Approach
  • GreyKeep Security Blog
  • About Us
  • Contact Us