A new #malware campaign is spoofing Palo Alto Networks' GlobalProtect #VPN to deliver #WikiLoader via SEO malvertising.

https://thehackernews.com/2024/09/hackers-use-fake-globalprotect-vpn.html

#cybersecurity

Hackers Use Fake GlobalProtect VPN Software in New WikiLoader Malware Attack

Hackers are spoofing GlobalProtect VPN software using SEO poisoning to deliver WikiLoader malware in a new cyberattack.

The Hacker News
Hackers Deploy Fake GlobalProtect VPN in Latest WikiLoader Malware Assault
It seems like hackers are at it again, this time deploying a fake GlobalProtect VPN in their latest WikiLoader malware assault. The malicious actors behind this attack are using malvertising tactics to lure unsuspecting victims into downloading the fake VPN software, w...
#CyberSecurity #Malware #VPN #Hackers #WikiLoader #DataProtection #CyberThreats #InformationSecurity #NetworkSecurity #TechNews
https://cloudhosting.evostrix.eu/hackers-deploy-fake-globalprotect-vpn-in-latest-wikiloader-malware-assault/
Hackers Deploy Fake GlobalProtect VPN in Latest WikiLoader Malware Assault

Attention all cyber security enthusiasts! It seems like hackers are at it again, this time deploying a fake GlobalProtect VPN in their latest WikiLoader

Evo Cloud
GlobalProtect VPN Exploited: New WikiLoader Malware Variant Discovered - RedPacket Security

Palo Alto Networks has observed that GlobalProtect, its virtual private network (VPN) software, was leveraged to deliver a new variant of the WikiLoader

RedPacket Security

Campagne #Malware #Italy Week 16

๐Ÿ‘ป๐Ÿ’ฃ๐Ÿ”ฅโ˜ ๏ธ

#AgentTesla: Offerta
#Remcos: Fattura
#WikiLoader: Delivery
#Guloader: Ordine
#Irata: APK Bank
#DarkCloud: Preventivo
#Formbook: Quote
#StrRat: Pagamento
#mwitaly

Anyone have eyes on this report of NotePad++ compromise via default plugin?
#NotePadPP #mineTools #DLLHijack #WikiLoader

https://asec.ahnlab.com/ko/63738/

"๋‹ˆ๊ฐ€ ์™œ ๊ฑฐ๊ธฐ์„œ ๋‚˜์™€" Notepad++ plugin์„ ๋ณ€์กฐํ•œ package ์•…์„ฑ์ฝ”๋“œ (WikiLoader) - ASEC BLOG

AhnLab Security Emergency response Center

ASEC BLOG

Campagne #Malware #Italy Week 10
โ˜ ๏ธ๐Ÿ”ฅ๐Ÿ’ฃ๐Ÿ‘ป

#AgentTesla: Ordine
#Formbook: Delivery
#Irata: APK Bank
#Remcos: Ordine
#WiKiloader: Fattura
#Pikabot: Resend

#mwitaly

Campagne #Malware #Italy Week 08

๐Ÿ”ฅโ˜ ๏ธ๐Ÿ’ฃ๐Ÿ‘ป
#AgentTesla: Ordine
#Formbook: Bonifico
#SpyNote: APK Bank
#Pikabot: Resend
#AveMaria: Quote
#ModiLoader: Elenco
#WiKiloader: Fattura
#Astaroth: Fattura
#Remcos: Giacenza GLS

#mwitaly

Campagne #Malware #Italy Week 48

Persistenti ๐Ÿ”ฅ
#AgentTesla: Bonifico
#Fombook: Ordine
#SpyNote: APK
#Guloader: Fattura
#RemcosRAT: AgenziaEntrate/PayPal/Offerta

Eccezione ๐Ÿ’ฃ
#AnyplaceRat: Pagamento
#WikiLoader: C2 ITA
#XWorm: Spedizione
#ChaosRat: Immagine
#WarzonRat: Nota

Ahoy, Cyber Explorers! Beware of the treacherous WikiLoader lurking in the digital seas. Our latest blog post unveils its cunning tactics. Climb the crow's nest and spot the danger from afar! ๐ŸŒŠ๐Ÿ’พ Read all about it here: https://cybercorsair.blogspot.com/2023/11/from-crows-nest-beware-of-wikiloader.html #CyberSecurity #wikiloader
FROM THE CROW'S NEST: "Beware of WikiLoader Malware!" ๐Ÿดโ€โ˜ ๏ธ

Alert: WikiLoader Malware Threat from Crow's Nest - Vigilance Key to Cybersecurity Defense.

WikiLoader malware-as-a-service targets Italian organizations

Threat actors are targeting Italian organizations with a phishing campaign aimed at delivering a new malware called WikiLoader. WikiLoader is a new piece of malware that is employed in a phishing campaign that is targeting Italian organizations. Threat actors behind the campaign are using WikiLoader to deliver a banking trojan, stealer, and malware such as Ursnif to the [โ€ฆ]

Security Affairs