Phishing campaigns are using AMP URLs to avoid detection

Categories: Awareness

Categories: News

Tags: phishing

Tags: amp

Tags: url

Tags: captcha

Tags: redirection

Researchers have found a new phishing tactic that uses Google Accelerated Mobile Pages (AMP) URLs to look trustworthy

(Read more…)

The post Phishing campaigns are using AMP URLs to avoid detection appeared first on Malwarebytes Labs.

Read more

Minecraft fans beware: Players and servers at risk from BleedingPipe vulnerability

Categories: Personal

Tags: Minecraft

Tags: mod

Tags: forge

Tags: players

Tags: vulnerability

Tags: RCE

Tags: bleedingpipe

Tags: malware

Minecraft players interested in modding are at risk from a remote code execution vulnerability targeting both players and servers.

(Read more…)

The post Minecraft fans beware: Players and servers at risk from BleedingPipe vulnerability appeared first on Malwarebytes Labs.

Read more

Ivanti patches second zero-day vulnerability being used in attacks

Categories: Exploits and vulnerabilities

Categories: News

Tags: Ivanti

Tags: EPMM

Tags: MobileIron

Tags: CVE-2023-35081

Tags: CVE-2023-35078

Tags: tomcat

Tags: arbitrary file write

Tags: ACL

Tags: upgrade

Ivanti has issued a patch to address a second critical zero-day vulnerability

(Read more…)

The post Ivanti patches second zero-day vulnerability being used in attacks appeared first on Malwarebytes Labs.

Read more

Public companies must now disclose breaches within 4 days

Categories: Business

Tags: SEC

Tags: filing

Tags: file

Tags: breach

Tags: breaches

Tags: US

Tags: cyber attack

Tags: disclosure

Tags: notification

Tags: public

We take a look at news that a new SEC rule will require public organisations impacted by a cyberattack to disclose it within 4 days.

(Read more…)

The post Public companies must now disclose breaches within 4 days appeared first on Malwarebytes Labs.

Read more

Compromised Barracuda appliances equipped with persistent backdoors by attackers

Categories: Exploits and vulnerabilities

Categories: News

Tags: Barracuda

Tags: ESG

Tags: CVE-2023-2868

Tags: SUBMARINE

Tags: SEASPY

Tags: shell

CISA has released three reports based on the analysis of backdoors planted on compromised Barracuda ESG appliances

(Read more…)

The post Compromised Barracuda appliances equipped with persistent backdoors by attackers appeared first on Malwarebytes Labs.

Read more

Meta subsidiaries must pay $14m over misleading data collection disclosure

Categories: Business

Tags: VPN

Tags: meta

Tags: Facebook

Tags: data

Tags: disclosure

Tags: australia

Tags: australian

Tags: traffic

We take a look at reports that Meta subsidiaries have been ordered to pay a sizeable fine relating to disclosure issues for a now discontinued VPN.

(Read more…)

The post Meta subsidiaries must pay $14m over misleading data collection disclosure appeared first on Malwarebytes Labs.

Read more

Supply chain attacks disrupt emergency services communications

Categories: Business

Tags: supply chain

Tags: attack

Tags: ambulance

Tags: trust

Tags: communications

Tags: service

Tags: disrupt

We take a look at a supply chain attack which disrupted two UK-based ambulance service’s ability to access customer records.

(Read more…)

The post Supply chain attacks disrupt emergency services communications appeared first on Malwarebytes Labs.

Read more