CyberConvoy Blog - Page 22 of 22 - Live Fearless

July Patch Tuesday patches include fix for exploited zero-day CVE-2022-30221

July Patch Tuesday patches include fix for exploited zero-day Microsoft’s July Patch Tuesday includes an actively exploited local privilege escalation vulnerability in the Windows Client/Server Runtime Subsystem (CSRSS). This vulnerability immediately made it to the Cybersecurity & Infrastructure Security Agency (CISA) list of known to be exploited in the wild list that are due for

Read More...

Cloud-Based Cryptocurrency mining attacks abuse GitHub Actions and Azure VMSecurity Affairs

Researchers investigated cloud-based cryptocurrency mining attacks targeting GitHub Actions and Azure VMs. Researchers from Trend Micro published a report that details cloud-based cryptocurrency mining attacks targeting GitHub Actions and Azure VMs and the threat actors behind them. Threat actors are attempting to compromise a large number of cloud-based systems to mine cryptocurrency with a significant

Read More...

SEO Poisoning used to distribute malware through Zoom, TeamViewer, Visual Studio installers

About the technique SEO poisoning technique is used to trick users into downloading installers (for TeamViewer, Zoom, Visual Studio, and possibly other software) bundled with “Batloader” and “Atera”. Those installers are distributed using compromised websites that appear in search results after entering certain keywords. Those keywords include “free productivity apps installation” or “free software development

Read More...