Logo Logo
  • Home
  • Modshield SB
  • services
    • Application Security Testing
    • IoT Security Testing
    • Infrastructure Security Testing
    • Testing for Compliance
    • Red Team Exercise
    • Performance Testing
  • Training
    • Cybersecurity Awareness Program
    • Cybersecurity For Developers(Web Application)
    • Cybersecurity For Developers(Mobile Application)
  • Resources
    • Blog
    • CyberNews
  • About
    • Partners
    • Contact

Top Cyber news February Week 2

  • Home
  • Blog Details
February 10 2022
  • CyberNews

Cyber news from around the world this week includes

  • New Android Update Patches 36 vulnerabilities
  • NimbleMamba Implants Used For Cyberattacks
  • SEO poisoning used to spread malware

Android’s Feb 2022 Update Patches 36 vulnerabilities

Google announced that the new security updates for February 2022 patch a total of 36 vulnerabilities. The most severe issue is CVE-2021-39675 which lets the attacker get privileges which means the hacker can exploit the vulnerability posing as a user and can gain access upto the super-admin level.

Cyber news: The latest security updates for February 2022 correct a total of 36 vulnerabilities, according to Google.
Android’s Feb 2022 Update

The update is divided into two parts of which the first part is released on Feb 3rd 2022 and the second part of the update was released on Feb 5th 2022. 

Security holes in the Framework, Media framework, and System were fixed in the first part of the update and the second part covers additional 21 flaws in the system and multiple components.

Android devices updated with the February patch or later are protected against all of these security issues. Google also released 4 separate patches for its pixel devices, all of them fixing major exploits.

NimbleMamba Implants Used For Cyberattacks

Known for continuously updating malware implants and attack mediums, the APT group was last linked to espionage targeting human rights activists and journalists in Palestine and Turkey.

The attackers used an assault chain focusing on Center Jap governments, international coverage supposes tanks and a state-affiliated airline.

Cyber news: The APT organisation was last related to espionage targeting human rights activists and journalists in Palestine and Turkey. It is known for constantly changing malware implants and assault media.
NimbleMamba Implants Used For Cyberattacks

NimbleMamba uses guardrails to make sure that all contaminated victims are inside TA402’s goal area. To put it simple NimbleMamba sends across a spear-phishing mail and sends the confirmed target to a RAR file upon which NimbleMambs installs their malware on the host.

TA402s’ highly targeted campaigns focused on the Middle East.

Cyberattack campaign uses search engine optimization (SEO) poisoning to spread malware

Attackers have used the method in at least two campaigns across Menlo Security’s global customer base, the REvil ransomware and backdoor SolarMarker. In SEO poisoning attacks, malefactors first compromise legitimate websites and later inject high volume keywords that most likely end up in SERP. 

As per Menlo Security reports the attack targets user rather than directly targeting the organizations. 

Cyber news: Malefactors compromise reputable websites before injecting high-volume keywords that are likely to appear in SERPs in SEO poisoning attacks.
SEO poisoning

This tactic is used to drop REvil ransomware samples and to drop a backdoor called SolarMarker. The SolarMarket creates a backdoor on the users’ system when they are directed to a compromised site and a malicious pdf is displayed.

The attackers are being very creative in finding new ways to exploit an organization or an individual every single moment and it is expected as much. Let’s hone the best cybersecurity practices to reduce such incidents.

Stay up to date with our cyber news blogs

Previous Post Next Post

Leave a Comment

Recent Posts

  • SOC 2 Compliance – Complete Guide
  • What is compliance and why do you need it?
  • OWASP WAF – Web Application Firewall
  • Top Cyber News April Week 3
  • Top Cyber News April Week 2

Recent Comments

  1. Vishnu on IEC 62443 – Cybersecurity for Industrial Automation and Control Systems

Archives

  • July 2022
  • June 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • June 2020

Categories

  • Blog
  • CyberNews
© Copyright 2020. Anada WordPres Theme By WordPressRiver