注意:攻撃者は VMware vCenter を悪用して永続性を確保している。CVE-2026-59310 を悪用した後、彼らはアクセスを維持するために reverse_ssh を実行す...
注意:攻撃者は VMware vCenter を悪用して永続性を確保している。CVE-2026-59310 を悪用した後、彼らはアクセスを維持するために reverse_ssh を実行する悪意のある cron ジョブを仕掛けた。研究者は47カ国にわたる最大361の被害者IPを特定した。続きを読む:
「TheHackersNews」タグが付いたAI Pulseの更新一覧です。
7 件のシグナル注意:攻撃者は VMware vCenter を悪用して永続性を確保している。CVE-2026-59310 を悪用した後、彼らはアクセスを維持するために reverse_ssh を実行する悪意のある cron ジョブを仕掛けた。研究者は47カ国にわたる最大361の被害者IPを特定した。続きを読む:
報告されていない部分にどれだけのマルウェアが潜んでいるのか?Stairwell は1,085件の公開脅威報告を分析し、公開されたマルウェアのハッシュ1件あたり平均2.4個の追加の悪意ある亜種に相当することを発見し、報告されていない5万4,000件以上の関連する悪意あるファイルを明らかにした。
398 fixes. One exploited Windows zero-day. Four unauthenticated 9.8 RCEs. Microsoft’s August Patch Tuesday fixes CVE-2026-68820, which can elevate an attacker with existing code execution to SYSTEM. It also closes the RC
Fake job interviews are delivering a VPN that can run commands. CERT-UA says Sandworm-linked UAC-0145 is targeting Ukrainian IT workers with recruiter lures, then pushing a modified WireGuard client that can execute comm
Kimwolf v7 makes DDoS traffic harder to distinguish from real browsing. The Android and IoT botnet now builds complete browser fingerprints for HTTP/2 floods, uses ENS and Tor to harden its C2, and targets Android TV box
Malicious MCP servers can make AI coding agents exfiltrate SSH keys, .env secrets, source code, and customer data. The attack, dubbed “GhostSplice,” splits a request across MCP channels so no single fragment looks overtl
Rogue AI • Metabase 0-day • Spectre bypass • Webmail attacks • Router backdoors • MCP supply-chain malware • 440 poisoned packages • AI token jacking • Device-code phishing • $30M crypto attacks • 26 ransomware hits a da