Sat.Nov 04, 2023 - Fri.Nov 10, 2023

Remove archives
article thumbnail

Lazarus targets blockchain engineers with new KandyKorn macOS Malware

Security Affairs

The attackers attempted to trick victims into downloading and decompress a ZIP archive (Cross-Platform Bridges.zip) containing the malicious Python code masqueraded by an arbitrage bot. log – SUGARLOADER Stage 3 (Loader)- Discord (fake) – HLOADER Stage 4 (Payload) – KANDYKORN Decompressing the archive, it reveals a Main.py

article thumbnail

SysAid zero-day exploited by Clop ransomware group

Security Affairs

The attacker uploaded a WAR archive containing a WebShell and other payloads into the webroot of the SysAid Tomcat web service.” .” reads the report published by Profero. “The vulnerability was exploited by a group known as DEV-0950 (Lace Tempest), as identified by the Microsoft Threat Intelligence team.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Dolly.com pays ransom, attackers release data anyway

Security Affairs

This was later presented as the main motivation to publicize the hack and announce a data auction along with sample files and free-downloadable archive dumps,” our researchers said. The attackers felt the sum was insufficient.

article thumbnail

Use It, Save It, Or Lose It: Spring Cleaning for Information Governance

Speaker: Speakers Michelle Kirk of Georgia Pacific, Darla White of Sanofi, & Scott McVeigh of Onna

As an organization’s most valuable asset, data should be cared for and integrated, managed, archived, and deleted as appropriate. Spring has sprung, which means it’s time to get your data house in order.