Government webmail hacked via XSS bugs in global spy campaign

By Bill Toulas Hackers are running a worldwide cyberespionage campaign dubbed ‘RoundPress,’ leveraging zero-day and n-day flaws in webmail servers to steal email from high-value government organizations. ESET researchers who uncovered the operation attribute it with medium confidence to the Russian state-sponsored hackers APT28 (aka “Fancy Bear” or “Sednit”). The campaign started in 2023 and continued with the adoption of new exploits in 2024, targeting Roundcube, Horde, MDaemon, and Zimbra. Notable targets include governments […]

read more

Fake Social Security Statement emails trick users into installing remote tool

by Pieter Arntz: Fake emails pretending to come from the US Social Security Administration (SSA) try to get targets to install ScreenConnect, a remote access tool. This campaign was flagged and investigated by the Malwarebytes Customer Support and Research teams. ScreenConnect, formerly known as ConnectWise Control, is a remote support and remote access platform widely used by businesses to facilitate IT support and troubleshooting. It allows technicians to remotely connect to […]

read more

FBI offers $10M for info on China’s Salt Typhoon hackers

Stefanie Schappert Senior Journalist The Federal Bureau of Investigation on Friday announces a $10 million reward for information on Salt Typhoon, the China-backed hacking group responsible for targeting several US telecoms, as well as the US Treasury. The agency said it is especially interested in any information that could help identify the specific individuals behind the campaign or about its operations targeting the telecommunications sector. “Investigation into these actors and their […]

read more

North Korean hackers are using LinkedIn to entice developers to coding challenges

Story by Efosa Udinmwen A hacker group from North Korea known as Slow Pisces has launched a sophisticated campaign targeting developers in the cryptocurrency sector through LinkedIn. The group, also known as TraderTraitor or Jade Sleet, poses as recruiters to lure victims with seemingly genuine job offers and coding challenges, only to infect their systems with malicious Python and JavaScript code. Thanks to this campaign, the group has been able to […]

read more
Trustpilot
The rating of livingsafeonline.com at Trustprofile Reviews is 9.1/10 based on 13 reviews.
A note to our visitors

This website has updated its privacy policy in compliance with changes to European Union data protection law, for all members globally. We’ve also updated our Privacy Policy to give you more information about your rights and responsibilities with respect to your privacy and personal information. Please read this to review the updates about which cookies we use and what information we collect on our site. By continuing to use this site, you are agreeing to our updated privacy policy.

Verified by MonsterInsights