phishing

  1. Critical Microsoft Bookings Vulnerability: Impersonation Attacks Exposed

    In a troubling revelation for users of Microsoft Bookings, a newly discovered vulnerability has opened the door to impersonation attacks, potentially allowing malicious actors to spoof identities, purchase illicit TLS certificates, execute domain name transfers, and even capture user accounts...
  2. Microsoft Excel Users Warned: Phishing Campaign Spreads Fileless Remcos Malware

    In a landscape where phishing attacks are as prevalent as coffee breaks, Microsoft Excel users are now on high alert due to a recently discovered phishing campaign that's spreading a dangerous fileless malware variant known as Remcos. This clever scheme, brought to our attention by Fortinet's...
  3. Escalating Threat: Remcos RAT Exploits Office Vulnerabilities

    In a burgeoning threat landscape, Microsoft Windows users are facing an escalating risk of complete device takeovers from a cunningly disguised malicious variant of the Remcos Remote Access Tool (RAT). This alarming development is part of a sustained campaign exploiting a known Remote Code...
  4. Cybersecurity Alert: Excel Documents Used to Distribute Remcos RAT

    In an alarming trend that underscores the evolving tactics of cybercriminals, hackers are increasingly weaponizing Excel documents to deliver malicious software, particularly the notorious Remcos Remote Access Trojan (RAT). This shift comes in light of Microsoft’s new security measures that...
  5. Midnight Blizzard's Spear-Phishing: RDP Threats Targeting Governments and NGOs

    The digital landscape is becoming increasingly treacherous as threat actors evolve their tactics. One of the most prominent players in this game, the Russian hacking group known as Midnight Blizzard (also referred to as NOBELIUM), has recently embarked on a large-scale spear-phishing campaign...
  6. Urgent Alert: Phishing Campaign Targeting RDP Users in Ukraine and Beyond

    A recent and highly sophisticated phishing campaign has been uncovered, aimed specifically at government agencies, military units, and industrial enterprises in Ukraine, with indications it could extend to other nations as well. The urgency is stirred by an alert issued by the Computer Emergency...
  7. CVE-2024-43580: Major Spoofing Vulnerability in Microsoft Edge

    Recently disclosed on October 17, 2024, CVE-2024-43580 is a significant spoofing vulnerability affecting the Microsoft Edge browser built on the Chromium platform. This revelation underlines the continuous need for vigilance among users and system administrators concerning software security...
  8. Beware: New Malware Exploits CAPTCHA Vulnerabilities in Windows 10/11

    It’s time to take out the tin foil hats and sharpen those cybersecurity instincts because a new threat is lurking in the shadows of your screen. McAfee’s latest revelations have sent Windows 10 and Windows 11 users into a frenzy of paranoia and vigilance, as a particularly insidious malware...
  9. Addressing CVE-2024-38200: Important Microsoft Office Spoofing Vulnerability

    The Microsoft Security Response Center (MSRC) has recently updated publicly disclosed information regarding CVE-2024-38200, a significant spoofing vulnerability within Microsoft Office. This vulnerability has raised concerns among users and IT administrators alike, calling for immediate...
  10. More and more scams!!!

    As I age, I"m a couple of weeks short of 86 now, I get inundated with scam emails. Now I'm not just getting ones that say they are from Amazon, my bank, UPS, other retailers, and payment services they are claiming to be from the Social Security! The first thing I do is look at the address...
  11. Another online con...

    I just received a message saying it was from Social Security. I looked at the sender's address, and it said... SocialSecurity.gov, followed by rmradcliffe@cox.net I searched for rmradcliffe@cox.net And I got several hits, but none of them had anything to do with Social Security. The message...
  12. Another New Scam!

    Well, today I got an email message supposedly from FedEx saying that they had my package and there is a problem with my address, with a big button to click to contact them and confirm my address. This is the first time I've gotten one that was supposed to be from FedEx, UPS, or the Post Office...
  13. Indicators of a Phishing/Social Engineering Email #2 - Fake PayPal

    Here is another real phishing email. This one purporting to be from PayPal. Lets dig in... (Orange) we have typos and grammatical errors (1) Again we have a weird email address from @paypap-us.com. This is highly unlikely owned by PayPal. (2) This email is probably BCC'd to a bunch of users...
  14. Windows 11 Have I been scammed?

    Hi everyone. I received an email from Comcast today, it says that my service will be suspended unless I update my payment information. It said that the credit card company failed to authorize the payment. This message really looks official, when I clicked on My Account in the message, I...
  15. NEWS New phishing method looks just like the real thing, but it steals your passwords

    Thanks to a new phishing method, hackers could steal all sorts of personal information by simply mimicking real login forms in Application Mode. This is a feature that’s available in all Chromium-based browsers, which includes Google Chrome, Microsoft Edge, and Brave. :shocked...
  16. Windows 10 Another Scam, watch out for this one!

    Got this one today, needless to say, I don't even use Norton! Nowhere does it even say who the charge is too... Thank you for your Auto-Renewal Order. Your Account/Card has been Debited for $299.00 (charges may appear later) Order Details To find more information on your order and to manage...
  17. Windows 10 Another New for me, SCAM!

    I just received this email, it's pretty obvious, that it's a scam, it doesn't even say what you are supposed to have ordered? It states at the bottom if you want to cancel this order, download the cancelation form from the link at the bottom of the page, fill it out and return it...
  18. VIDEO AA21-265A: Conti Ransomware

    Original release date: September 22, 2021 Summary Immediate Actions You Can Take Now to Protect Against Conti Ransomware • Use Link Removed. • Segment and segregate networks and functions. • Update your operating system and software. Note: This Alert uses the MITRE Adversarial Tactics...
  19. Windows 10 New to me, scam!!!

    I received a new to me email message with an attached image file. I didn't click on the image and researched the senders address. ***6762720@vzwpix.com I entered the stars instead of the area code. This seems to be a new scam, at least I've not run into it before. Just a warning, and I was...
  20. Microsoft announces passwordless future – available across Microsoft Edge and Microsoft 365 apps

    I don’t know a single person who enjoys managing passwords. Given how much of my life is spent online and in various apps, keeping track of it all, ensuring they’re unique and regularly updated – it can quickly become overwhelming for me – and I’m a techie! Which is why I’m so excited about...