« 2023 »

627 reports

2023-06-19 • Hauri

Hauri reported that Lazarus weaponized open-source tools including PuTTY, KiTTY, TightVNC, Sumatra PDF Reader, and muPDF/Subliminal Recording as part of job-themed attacks. Since June 2022, the group allegedly approached engineers on LinkedIn while impers…

#TightVNC
2023-06-16 • Rekt

REKT reports that Atomic Wallet users lost more than $100 million after addresses on 13 chains were drained beginning on June 2, 2023, with both desktop and mobile users affected. The article says stolen assets were moved through a three-step process in w…

#Cryptocurrency #AtomicWallet
2023-06-16 • Ahnlab

AhnLab reports that Kimsuky-linked malware was distributed as a compressed archive containing a readme file and a .NET executable disguised as a Korean HWP document by using a document icon and padded filename spacing. When run, the dropper decodes an emb…

#Kimsuky
2023-06-13 • Neptune Mutual

Ronin Network lost 173,600 ETH and 25.5 million USDC, about $624 million, after attackers used compromised validator access to forge withdrawals from the Ronin Bridge. The exploit depended on Ronin's five of nine validator approval model: four Sky Mavis v…

#AxieInfinity