VulnHub

AI-Powered Cybersecurity Intelligence

Last Update Check:

Latest Intelligence

SecurityWeek
‘Crocodilus’ Android Banking Trojan Allows Device Takeover, Data Theft

The Crocodilus Android banking trojan poses a significant threat by enabling device takeover, overlay attacks, and keylogging, compromising user data and security. Its capabilities allow attackers to remotely control infected devices, making it a critical concern for Android users.


Impact: Android operating system

In the Wild: Unknown

Age: Recently identified

Remediation: Users should ensure their devices are updated and utilize security software to detect and mitigate threats.

Android

Published:

SecurityWeek
CISA Analyzes Malware Used in Ivanti Connect Secure Zero-Day Attacks

CISA has released an analysis of Resurge, a variant of SpawnChimera malware, which is being utilized in attacks against a recently discovered Ivanti Connect Secure zero-day vulnerability. The significance lies in the ongoing threat posed by this malware variant as it exploits critical vulnerabilities in widely used software.


Impact: Ivanti Connect Secure

In the Wild: Yes

Age: Recently disclosed

Remediation: Apply patches provided by Ivanti, monitor network traffic for unusual activity.

Zero-day

Published:

SecurityWeek
170,000 Impacted by Data Breach at Chord Specialty Dental Partners

Chord Specialty Dental Partners has experienced a data breach affecting over 170,000 individuals due to an email security incident. This breach highlights the vulnerabilities in email security within healthcare organizations, raising concerns about patient data protection.


Impact: Chord Specialty Dental Partners email systems

In the Wild: Unknown

Age: Recently disclosed

Remediation: Enhance email security protocols, notify affected individuals, conduct a security audit.

Data Breach

Published:

SecurityWeek
Industry Moves for the week of March 31, 2025 - SecurityWeek

The article discusses the latest industry moves and significant changes in the cybersecurity sector for the week of March 31, 2025. It highlights the importance of staying updated with ongoing trends and shifts within the industry.


Impact: Not specified

In the Wild: Unknown

Age: Unknown

Remediation: None available

Update

Published:

The Hacker News
Russia-Linked Gamaredon Uses Troop-Related Lures to Deploy Remcos RAT in Ukraine

A phishing campaign has been identified targeting entities in Ukraine, utilizing Russian troop-related lures to distribute the Remcos RAT. This highlights ongoing cybersecurity threats linked to geopolitical tensions.


Impact: Remcos RAT, Windows systems

In the Wild: Yes

Age: Recently disclosed

Remediation: Implement security awareness training, monitor for suspicious activity.

Phishing Cisco

Published:

Krebs on Security
How Each Pillar of the 1st Amendment is Under Attack

The article discusses President Trump's actions that are perceived as attacks on the First Amendment rights, impacting various groups including journalists and students. This situation raises significant concerns about the future of free speech and civil liberties in America.


Impact: Journalists, students, universities, government workers, lawyers, judges

In the Wild: Unknown

Age: Recently discussed

Remediation: None available

Published:

The Hacker News
RESURGE Malware Exploits Ivanti Flaw with Rootkit and Web Shell Features

The newly identified RESURGE malware exploits a patched vulnerability in Ivanti Connect Secure appliances, incorporating advanced features such as rootkit and web shell capabilities. This poses significant risks to affected systems, emphasizing the importance of timely updates and security measures.


Impact: Ivanti Connect Secure (ICS) appliances

In the Wild: Yes

Age: Recently disclosed

Remediation: Apply the latest patches provided by Ivanti and enhance security protocols.

Exploit Patch

Published:

The Hacker News
The Hacker News
BlackLock Ransomware Exposed After Researchers Exploit Leak Site Vulnerability

AI summary not available. Read original article »

Ransomware Exploit Vulnerability

Published:

darkreading
Evilginx Tool (Still) Bypasses MFA

AI summary not available. Read original article »

Published:

darkreading
Oracle Still Denies Breach as Researchers Persist

AI summary not available. Read original article »

Published:

darkreading
darkreading
Malaysia PM Refuses to Pay $10M Ransomware Demand

AI summary not available. Read original article »

Ransomware

Published: