VIRUS-NEWS
Mandrake spyware sneaks onto Google Play again, flying under the radar for tw...
by Tatyana Shishkova, Igor Golovin29 Jul 2024 at 10:00am
Mandrake spyware threat actors resume attacks with new functionality targeting Android devices while being publicly available on Google Play.
When spear phishing met mass phishing
by Roman Dedenok11 Jul 2024 at 10:00am
Kaspersky experts have discovered a new scheme that combines elements of spear and mass phishing
Developing and prioritizing a detection engineering backlog based on MITRE AT...
by Roman Nazarov, Andrey Tamoykin, Kaspersky Security Services9 Jul 2024 at 1:00pm
How a SOC can efficiently manage priorities when writing detection logic for various MITRE ATT&CK techniques and what tools can help.
CloudSorcerer ? A new APT targeting Russian government entities
by GReAT8 Jul 2024 at 7:00am
Kaspersky discovered a new APT CloudSorcerer targeting Russian government entities and using cloud services as C2, just like the CloudWizard actor.
Cybersecurity in the SMB space ? a growing threat
by Kaspersky25 Jun 2024 at 10:00am
Kaspersky analysts explain which applications are targeted the most, and how enterprises can protect themselves from phishing and spam.
XZ backdoor: Hook analysis
by Anderson Leite, Sergey Belov24 Jun 2024 at 10:00am
In this article, we analyze XZ backdoor behavior inside OpenSSH, after it has achieved RSA-related function hook.
Analysis of user password strength
by Alexey Antonov18 Jun 2024 at 11:30am
Kaspersky experts conducted a study of password resistance to attacks that use brute force and smart guessing techniques.
Cinterion EHS5 3G UMTS/HSPA Module Research
by Kaspersky ICS CERT13 Jun 2024 at 10:00am
We performed the security analysis of a Telit Cinterion modem in course of a bigger project of security assessment of a popular model of a truck and found eight vulnerabilities.
QR code SQL injection and other vulnerabilities in a popular biometric terminal
by Georgy Kiguradze11 Jun 2024 at 8:00am
The report analyzes the security properties of a popular biometric access control terminal made by ZKTeco and describes vulnerabilities found in it.
Bypassing 2FA with phishing and OTP bots
by Olga Svistunova10 Jun 2024 at 10:00am
Explaining how scammers use phishing and OTP bots to gain access to accounts protected with 2FA.