New SynkLoader malware pushed in Microsoft Teams phishing campaign

SynkLoader Malware Pushed Through Microsoft Teams Phishing Campaigns, Steals Credentials and More A sophisticated malware campaign has been uncovered, using Microsoft Teams to distribute a previously unknown malware family called SynkLoader. The attackers use phishing tactics, impersonating IT help desks, to trick victims into installing a fake “PowerShell Cleaner” executable hosted on Microsoft Azure. Once … Read more

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet A sophisticated piece of malware has been discovered spreading through built-in updaters in certain Android car systems, allowing hackers to engage in ad fraud and create a proxy botnet. The malware, which has already infected hundreds of vehicles worldwide, poses a significant threat … Read more

Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot

Microsoft’s own security tool, Microsoft Defender, has been found vulnerable to a critical flaw that allows attackers to delete security software installed on Windows systems at boot time. This means that malicious actors can exploit this weakness to prevent even Microsoft’s own security measures from loading, effectively rendering the system completely exposed and undefended. The … Read more

CISA orders feds to patch actively exploited TrueConf Server flaws

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a high-priority alert to federal agencies, ordering them to patch two critical vulnerabilities in the TrueConf Server self-hosted communications platform as soon as possible. These flaws have been actively exploited by hackers, putting sensitive information and systems at risk. TrueConf Server is used by organizations … Read more

New SynkLoader malware pushed in Microsoft Teams phishing campaign

A New Malware Family Emerges in Microsoft Teams Phishing Campaigns, Threatens Corporate Credentials and Data In a disturbing trend, cybercriminals have started using a previously unknown malware family called SynkLoader to steal sensitive information from unsuspecting victims through fake Microsoft Teams phishing campaigns. This malicious software, dubbed “SynkLoader,” is designed to extract credentials, profile systems, … Read more

Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet

Android devices are being compromised by a sophisticated malware campaign, which spreads through built-in updaters and exploits vulnerabilities in popular apps. The malicious code, dubbed “ProxyBot,” is designed to create a proxy botnet that can be used for various illicit activities, including ad fraud. The affected Android phones are those running the latest versions of … Read more

Microsoft Defender’s Own Driver Can Be Weaponized to Delete Security Software at Boot

A Critical Flaw in Microsoft Defender’s Driver Exposes Organizations to Catastrophic Data Loss A recently disclosed vulnerability in Microsoft Defender’s own driver has been found to allow attackers to delete security software at boot time, leaving systems and data vulnerable to even more severe threats. This alarming finding affects organizations worldwide that rely on Microsoft … Read more

Is Online Privacy Possible? How Digital Identities Can Help

The internet has become a vast surveillance state, where every online action is tracked, profiled, and monetized by data brokers and advertisers. This reality is often referred to as “surveillance capitalism,” where attention and personal data are the product, and individuals are the raw material. The mechanics of this system are almost invisible, with a … Read more