🔮 This Zip File Can Own Your Server

Hackers are exploiting this RIGHT NOW to take full control of your server.

https://www.youtube.com/shorts/cGJPbISQARA

#cybersecurity #hacking #infosec #SimpleHelp #vulnerability #cve #threatintel #security #redteam

This Zip File Can Own Your Server #Shorts

YouTube

📰 Phishing Campaign Abuses Legitimate SimpleHelp RMM Tool via Fake DHL 'Shipment Arrived' Emails

⚠ Phishing Alert: Fake DHL 'shipment arrived' emails are dropping a malicious installer for the SimpleHelp RMM tool, giving attackers a backdoor into victim networks. Be cautious with attachments! 📩 #Phishing #Malware #SimpleHelp #RMM

🔗 https://cyber.netsecops.io/articles/phishing-campaign-abuses-simplehelp-rmm-tool-via-fake-dhl-emails/?utm_source=mastodon&utm_medium=soc


Phishing Campaign Abuses Legitimate SimpleHelp RMM Tool via Fake DHL 'Shipment Arrived' Emails

A new phishing campaign impersonates DHL to trick users into installing a malicious, pre-configured version of the legitimate SimpleHelp RMM tool, providing attackers with backdoor access.

CyberNetSec.io

Malicious #simplehelp #rmm #opendir at:

https://katz.adv\.br/dhl/

You’re invited: Four phishing lures in campaigns dropping RMM tools
#ITarian #PDQConnect #SimpleHelp #AteraAgent
https://redcanary.com/blog/threat-intelligence/phishing-rmm-tools/
You’re invited: Four phishing lures in campaigns dropping RMM tools | Red Canary

Joint research from Red Canary Intelligence and Zscaler threat hunters spotlights phishing campaigns dropping RMM tools

Red Canary
📱 VulnĂ©rabilitĂ© dans SimpleHelp RMM exploitĂ©e par des acteurs de ransomware
📝 La **Cybersecurity and Infrastructure Security Agency (CISA)** americaine a publiĂ© un avis concernant l'exploitation par des acteurs de ransomware d'une **vul...
📖 cyberveille : https://cyberveille.ch/posts/2025-06-13-vulnerabilite-dans-simplehelp-rmm-exploitee-par-des-acteurs-de-ransomware/
🌐 source : https://www.cisa.gov/news-events/cybersecurity-advisories/aa25-163a
#CISA #SimpleHelp #Cyberveille
Vulnérabilité dans SimpleHelp RMM exploitée par des acteurs de ransomware

La Cybersecurity and Infrastructure Security Agency (CISA) americaine a publiĂ© un avis concernant l’exploitation par des acteurs de ransomware d’une vulnĂ©rabilitĂ© non corrigĂ©e dans SimpleHelp Remote Monitoring and Management (RMM). Cette vulnĂ©rabilitĂ© a Ă©tĂ© utilisĂ©e pour compromettre les clients d’un fournisseur de logiciels de facturation de services publics. Depuis janvier 2025, un schĂ©ma plus large d’attaques par ransomware a Ă©tĂ© observĂ©, ciblant les organisations via des versions non corrigĂ©es de SimpleHelp RMM. Les versions concernĂ©es sont les versions 5.5.7 et antĂ©rieures, qui contiennent plusieurs vulnĂ©rabilitĂ©s, notamment la CVE-2024-57727, une vulnĂ©rabilitĂ© de traversĂ©e de chemin.

CyberVeille

FBI: Over 900 Organizations Hit by Play Ransomware, SimpleHelp Exploits and ESXi Variants Used

https://forum.hashpwn.net/post/642

#playcrypt #ransomware #RaaS #simplehelp #exploit #esxi #hashpwn #cybersecurity #news

DragonForce operator chained SimpleHelp flaws to target an MSP and its customers

Sophos warns that a DragonForce ransomware operator chained three vulnerabilities in SimpleHelp to target a managed service provider.

Security Affairs
U.S. CISA adds SimpleHelp flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds SimpleHelp vulnerability to its Known Exploited Vulnerabilities catalog.

Security Affairs
Hackers misbruiken kwetsbaarheden in simplehelp rmm om sliver-malware te verspreiden

Cybercriminelen richten zich op kwetsbare SimpleHelp RMM-clients om beheerdersaccounts aan te maken en achterdeuren te installeren, wat mogelijk de basis legt

Tech Nieuws