Security Guard Magazine
    Thumbnail
    Russia malware espionage cybersecurity

    GamaCopy: The Cyber Group Mimicking Russian State Hackers

    January 27, 2025 • 1 min read

    A new threat actor dubbed GamaCopy has emerged, imitating tactics of Kremlin-linked Gamaredon group to target Russian organizations. Using military-themed bait and sophisticated tools like UltraVNC, the group represents an evolution in cyber espionage techniques aimed at creating attribution confusion.

    Thumbnail
    malware China cybersecurity

    Sophisticated PNGPlug Malware Campaign Targets Chinese-Speaking Regions

    January 21, 2025 • 1 min read

    Security researchers uncover a sophisticated cyber attack using PNGPlug loader to deploy ValleyRAT malware through deceptive software installers. The campaign, attributed to the Silver Fox group, specifically targets Chinese speakers in Hong Kong, Taiwan, and Mainland China with advanced malware delivery techniques.

    Thumbnail
    UEFI Microsoft Windows malware

    Critical UEFI Secure Boot Vulnerability Threatens Windows Systems Worldwide

    January 20, 2025 • 1 min read

    A major security flaw in UEFI Secure Boot (CVE-2024-7344) exposes Windows systems to potential bootkit attacks that can survive system reboots and OS reinstalls. Microsoft and Linux vendors have released patches to address this vulnerability that bypasses critical startup security checks.

    Thumbnail
    vulnerability RCE cybersecurity malware

    Critical SimpleHelp Vulnerabilities Expose Networks to Remote Attacks

    January 15, 2025 • 1 min read

    Multiple severe security flaws discovered in SimpleHelp remote access software enable attackers to steal files, escalate privileges, and execute malicious code. The vulnerabilities, found by Horizon3.ai researchers, have been patched in recent versions but require immediate updates.

    Thumbnail
    WordPress malware cybercrime e-commerce

    New WordPress Credit Card Skimmer Hides in Database to Steal Payment Data

    January 13, 2025 • 1 min read

    Cybersecurity researchers have discovered a sophisticated credit card skimming campaign targeting WordPress e-commerce sites by injecting malicious code into database tables. The stealthy malware evades detection while capturing payment information through fake forms and encrypted exfiltration methods.

    Thumbnail
    Google Chrome malware cybersecurity

    Chrome Store Scammers Game Search Results with Hidden Translation Spam

    January 12, 2025 • 1 min read

    Developers are exploiting Chrome Web Store's translation feature to promote questionable extensions through deceptive keyword stuffing in foreign language descriptions. Over 900 extensions were found using these tactics to manipulate search rankings, raising security concerns.

    Thumbnail
    malware cybersecurity Rust

    Fickle Stealer: New Rust-Based Malware Emerges with Advanced Data Theft Capabilities

    January 11, 2025 • 1 min read

    A sophisticated new malware called Fickle Stealer has emerged, utilizing multiple distribution methods and advanced evasion techniques to steal sensitive data. Written in Rust, this evolving threat can dynamically adjust its targeting while employing self-protection mechanisms to avoid detection.

    Thumbnail
    China Japan cybersecurity malware

    Chinese Hackers Target Japan in Long-Running Cyber Espionage Campaign

    January 09, 2025 • 1 min read

    Japanese authorities reveal MirrorFace, a China-linked threat actor, has conducted sophisticated cyberattacks against critical sectors since 2019. The campaign deployed advanced malware and evasion techniques to target government agencies, think tanks, and technology sectors, highlighting persistent threats to national security.

    Thumbnail
    cybersecurity malware Singapore Iran

    Critical Vulnerability in KerioControl Firewalls Puts Thousands of Systems at Risk

    January 09, 2025 • 1 min read

    A dangerous security flaw in GFI KerioControl firewalls allows attackers to remotely execute code and potentially take control of affected systems. Over 23,800 exposed instances are at risk across multiple countries, with active exploitation attempts already detected from Asia.

    Thumbnail
    SonicWall VPN cybersecurity malware

    Critical SonicWall Firewall Vulnerability Requires Immediate Patching

    January 09, 2025 • 0 min read

    SonicWall has disclosed a high-severity authentication bypass flaw in SonicOS that threatens SSL VPN and SSH management functions. The company has released urgent patches and mitigation guidance for affected firewall models to prevent potential exploitation.

  • Previous
  • 2
  • 3
  • 4
  • 5
  • 6
  • Next

Free Security Guards Resource and Information Magazine