The Security Blog From Gridinsoft

LitterDrifter Worm Spreads on USB Drives

LitterDrifter – Russia’s USB Worm Targeting Ukrainian Entities

LitterDrifter USB worm, intricately linked to the notorious Gamaredon group and originating from Russia. It has set its sights on…

Apache ActiveMQ Vulnerability Exploited In The Wild

Recent Apache ActiveMQ vulnerability, that allows for remote code execution, is reportedly exploited in real-world attacks. Analysts noticed several exploitation…

Zimbra Vulnerability Exploited in the Wild

Google TAG’s recent discovery reveals a 0-day exploit, CVE-2023-37580, targeting Zimbra Collaboration. This is a Cross-Site Scripting (XSS) vulnerability exploited…

ALPHV/BlackCat Ransomware Reports MeridianLink Hack To SEC

Ransomware Gang ALPHV Takes Unprecedented Step: Files SEC Complaint Over Alleged Victim’s Undisclosed Breach. And no, this is not a…

VMWare Cloud Director Vulnerability Circumvents Authentication

VMware, a key player in virtualization services, is reaching out to users about a critical security issue in its Cloud…

similarities between LockBit and BlackMatter

Experts Find Similarities Between LockBit and BlackMatter

Cybersecurity researchers have confirmed similarities between the latest iteration of…

0-day vulnerabilities in PrestaShop

Stores Are under Attack due to 0-Day Vulnerability in PrestaShop

Hackers exploit a 0-day vulnerability in the open-source e-commerce platform…

Luca Stealer

Luca Stealer Source Code Published In The Darknet

Luca Stealer, an omni-purpose stealing malware programmed on Rust, was…

Linux malware Lightning Framework

New Linux Malware Lightning Framework Installs Backdoors and Rootkits

Intezer analysts call the new Linux malware Lightning Framework a…

0-day vulnerability in Chrome

Chrome 0-day Vulnerability Used to Attack Candiru Malware

Avast has discovered that DevilsTongue spyware, created by Israeli company…

Candiru Malware Uses 0-day Vulnerability In Chrome

Candiru Malware Uses 0-day Vulnerability In Chrome

Following Microsoft, Google and Citizen Lab, another revelation came from…

Malicious Campaign through Google Search

Fraudsters Are Running a Malicious Advertising Campaign through Google Search

Malwarebytes, an information security company, has discovered a large malicious…

Fake app for DDoS attacks

Fake DDoS App Targets Pro-Ukrainian Hacktivists

Google Threat Analysis Group (TAG) specialists reported that the Russian-speaking…

CloudMensis Malware for macOS

CloudMensis Malware Attacks MacOS Users

ESET experts have discovered the CloudMensis malware, which is used…

phishing kit targeting PayPal

Cybersecurity Researchers Discovered a New Phishing Kit targeting PayPal Users

Akamai has identified a new phishing kit that is being…

PoC exploit for macOS

Microsoft Releases PoC Exploit to Escape MacOS Sandbox

Microsoft has detailed a recently patched vulnerability affecting Apple operating…

U2K Ransomware Strikes, Thousands Of Victims

U2K Ransomware Strikes, Thousands Of Victims

U2K ransomware, probably the rising star on the ransomware arena,…

AI Assistant

Hello! 👋 How can I help you today?