14 Nov, 2024

Sitting Ducks DNS attacks let hackers hijack over 35,000 domains

Threat actors have hijacked more than 35,000 registered domains in so-called Sitting Ducks attacks that allow claiming a domain without having access to the owner’s account at the DNS provider or registrar. In a Sitting Ducks attack, cybercriminals exploit configuration shortcomings at the registrar level and insufficient ownership verification at DNS providers. Researchers at DNS-focused security vendor Infoblox […]

4 mins read

7 Best AI Music Generators That Are Already Available

AI here, AI there… Today, you can find at least one useful tool with AI at every stage of photo, audio, and video production. It can boost your creativity, handle routine tasks, or speed up the basic workflow. It’s always amazing to see what modern technology can do, literally synthesizing “new” material from vast amounts […]

6 mins read

Massive SMS stealer campaign infects Android devices in 113 countries

A malicious campaign targeting Android devices worldwide utilizes thousands of Telegram bots to infect devices with SMS-stealing malware and steal one-time 2FA passwords (OTPs) for over 600 services. Zimperium researchers discovered the operation and have been tracking it since February 2022. They report finding at least 107,000 distinct malware samples associated with the campaign. The cybercriminals are motivated […]

2 mins read

New Android malware wipes your device after draining bank accounts

A new Android malware that researchers call ‘BingoMod’ can wipe devices after successfully stealing money from the victims’ bank accounts using the on-device fraud technique. Promoted through text messages, the malware poses as a legitimate mobile security tool and can steal up to 15,000 EUR per transaction. According to researchers analyzing it, BingoMod is currently under […]

3 mins read

New Specula tool uses Outlook for remote code execution in Windows

Microsoft Outlook can be turned into a C2 beacon to remotely execute code, as demonstrated by a new red team post-exploitation framework named “Specula,” released today by cybersecurity firm TrustedSec. This C2 framework works by creating a custom Outlook Home Page using WebView by exploiting CVE-2017-11774, an Outlook security feature bypass vulnerability patched in October 2017. “In […]

3 mins read

NVIDIA Begins Sampling Its Next-Gen AI Powerhouse, Blackwell, All Over The World, Mass Production On-Track

NVIDIA will begin sampling the first Blackwell AI accelerators across the globe this week as the firm demonstrates unparalleled performance with its next-gen architecture. NVIDIA CEO Jensen Huang Provides Update On Blackwell At The SIGGRAPH, Sampling Starts This Week, Also Reveals Several New “AI Bits” It was a delight to see NVIDIA’s CEO Jensen Huang […]

3 mins read

How to Make Windows 11 Look and Feel Like Windows 10

Nearly three years after it came out and a year before Windows 10 reaches its end of life, Windows 11 still accounts for only 29% of PC operating system installs, with its predecessor accounting for 66%. One reason: a lot of people don’t like the subtle changes in Windows 11’s user interface, from its bloated Start menu to its […]

17 mins read

US offers $10M for tips on DPRK hacker linked to Maui ransomware attacks

The U.S. State Department is offering a reward of up to $10 million for information that could help capture a North Korean military hacker identified as Rim Jong Hyok. Part of the Andariel North Korean hacking group, Hyok and other Andariel operatives were linked to Maui ransomware attacks targeting critical infrastructure and healthcare organizations across the […]

3 mins read

Over 3,000 GitHub accounts used by malware distribution service

Threat actors known as ‘Stargazer Goblin’ have created a malware Distribution-as-a-Service (DaaS) from over 3,000 fake accounts on GitHub that push information-stealing malware. The malware delivery service is called Stargazers Ghost Network and it utilizes GitHub repositories along with compromised WordPress sites to distribute password-protected archives that contain malware. In most cases, the malware are infostealers, such […]

4 mins read

SparkFun RTK EVK offers GNSS with centimeter accuracy, WiFi, Bluetooth, 4G LTE Cat 1, and Ethernet connectivity

SparkFun RTK EVK is a fully-enclosed GNSS platform designed for fixed or mobile high-precision positioning and navigation applications with centimeter accuracy thanks to RTK (real-time kinematic) technology implemented with modules from u-blox. About two months ago, Sparkfun introduced the RTK Torch waterproof GNSS surveyor with Unicore UM980 GNSS module with RTK support, ESP32 for WiFi/Bluetooth, […]

1 min read