U.S. Authorities Charge Alleged Operator of Black Kingdom Ransomware Group

166/68 Tuesday, May 6, 2025 The U.S. Department of Justice (DoJ) has charged Rami Khaled Ahmed, a 36-year-old Yemeni national, suspected of operating the Black Kingdom ransomware campaign. Ahmed is accused of being involved in over 1,500 ransomware attacks on Microsoft Exchange servers worldwide, including targets in the United States such as schools, hospitals, and […]

ThaiCERT

May 6, 2025

Despite Arrests, Scattered Spider Hacker Group Continues Cyberattacks on Major Organizations

165/68 Tuesday, May 6, 2025 Despite law enforcement agencies in multiple countries identifying and arresting several members of the hacker group Scattered Spider, the group continues to launch cyberattacks against high-profile targets. Recent reports indicate that the group was behind an attack on the network of Marks & Spencer, a major British retailer, using the […]

ThaiCERT

May 6, 2025

SonicWall Reveals Active Exploitation of Two Security Vulnerabilities Affecting SMA100 Devices

164/68 Friday, May 2, 2025 SonicWall has disclosed that two security vulnerabilities affecting its Secure Mobile Access (SMA100) devices continue to be actively exploited in the wild, despite patches having been released. The details of the vulnerabilities are as follows: These vulnerabilities affect the SMA 100 Series, including the SMA 200, 210, 400, 410, and […]

ThaiCERT

May 2, 2025

Malware Masquerades as Antivirus Plugin to Stealthily Compromise WordPress Sites

163/68 Friday, May 2, 2025 Security researchers from Wordfence have uncovered a new type of malware targeting WordPress websites by disguising itself as a legitimate anti-malware plugin. The malware often uses deceptive filenames such as WP-antymalwary-bot[.]php or addons[.]php, allowing it to remotely control infected sites. It remains hidden from the WordPress admin dashboard and injects […]

ThaiCERT

May 2, 2025

France Accuses APT28 of Cyberattacks on at Least 12 Domestic Organizations

162/68 Thursday, May 1, 2025 France’s Ministry of Foreign Affairs issued a statement on Tuesday accusing APT28, a hacking group linked to Russia’s military intelligence agency (GRU), of carrying out cyberattacks on at least 12 organizations within France over the past four years. The ministry condemned the actions as “destabilizing and dishonorable behavior by a […]

ThaiCERT

May 1, 2025

Earth Kurma: New APT Group Targeting Southeast Asian Governments and Telecom Providers

160/68 Wednesday, April 30, 2025 Trend Research has uncovered a new advanced persistent threat (APT) group dubbed “Earth Kurma”, which is actively targeting government agencies and telecommunications organizations in the Philippines, Vietnam, Thailand, and Malaysia. The group employs custom malware, rootkits, and cloud storage services such as Dropbox and OneDrive to exfiltrate sensitive data, steal […]

ThaiCERT

April 30, 2025

Half of Mobile Devices Still Run Outdated Operating Systems, Study Finds

159/68 Wednesday, April 30, 2025 A new study reveals that over half of mobile devices worldwide continue to run outdated operating systems, posing a significant cybersecurity risk. The 2025 Global Mobile Threat Report by cybersecurity firm Zimperium highlights a growing trend in cyberattacks targeting mobile devices and vulnerabilities in mobile applications. The report warns that […]

ThaiCERT

April 30, 2025

Zero-Day Exploits Used in Craft CMS Attacks, Orange Cyberdefense Warns

158/68 Tuesday, April 29, 2025 The CSIRT team at Orange Cyberdefense has reported that attackers exploited two vulnerabilities—one of them a zero-day—in Craft CMS to compromise servers and steal data. The vulnerabilities, which were actively exploited in the wild, were discovered during an incident response investigation involving a compromised client server. The two flaws include: […]

ThaiCERT

April 29, 2025

WooCommerce Plugin Users Targeted by Phishing Campaign Impersonating Fake Security Vulnerability

157/68 Tuesday, April 29, 2025 Cybersecurity researchers have issued a warning about a large-scale phishing campaign targeting WooCommerce plugin users by exploiting fake security alerts. The attackers are tricking website administrators into downloading a “critical patch” that instead installs a backdoor granting the attacker covert control over the site. Patchstack, a cybersecurity firm specializing in […]

ThaiCERT

April 29, 2025
1 39 40 41 66