Microsoft says the Lazarus group is weaponizing open-source software such as PuTTY, KiTTY, TightVNC, and Sumatra PDF Reader, compromising numerous organizations (Dan Goodin/Ars Technica)

Dan Goodin / Ars Technica:
Microsoft says the Lazarus group is weaponizing open-source software such as PuTTY, KiTTY, TightVNC, and Sumatra PDF Reader, compromising numerous organizations  —  PuTTY, KiTTY, TightVNC, Sumatra PDF Reader, and muPDF/Subliminal Recording all targeted.  —  Hackers backed by the North Korean government …

Related Articles

The creator of Kiwi Farms, known for hosting targeted harassment campaigns, says the forum site was hacked and users’ email and IP address data is compromised (Dan Goodin/Ars Technica)

Dan Goodin / Ars Technica:
The creator of Kiwi Farms, known for hosting targeted harassment campaigns, says the forum site was hacked and users’ email and IP address data is compromised  —  Harassment site is down for now after hacker gains access to admin account.  —  The head of Kiwi Farms, the Internet forum best known …

Cisco Talos: the Lazarus group exploited Log4j to compromise VMware Horizon and target energy providers in the US, Canada, and Japan from February to July 2022 (Carly Page/TechCrunch)

Carly Page / TechCrunch:
Cisco Talos: the Lazarus group exploited Log4j to compromise VMware Horizon and target energy providers in the US, Canada, and Japan from February to July 2022  —  Security researchers have linked a new cyber espionage campaign targeting U.S., Canadian and Japanese energy providers …

Researchers detail Chaos, a new cross-platform malware that infected a wide range of Linux and Windows devices, including routers, FreeBSD boxes, and servers (Dan Goodin/Ars Technica)

Dan Goodin / Ars Technica:
Researchers detail Chaos, a new cross-platform malware that infected a wide range of Linux and Windows devices, including routers, FreeBSD boxes, and servers  —  Small office routers?  FreeBSD machines?  Enterprise servers?  Chaos infects them all.  —  Researchers have revealed a never …

Microsoft admits Windows was not properly downloading and applying updates to the driver blocklist designed to thwart “bring your own vulnerable driver” attacks (Dan Goodin/Ars Technica)

Dan Goodin / Ars Technica:
Microsoft admits Windows was not properly downloading and applying updates to the driver blocklist designed to thwart “bring your own vulnerable driver” attacks  —  Microsoft said Windows automatically blocked dangerous drivers.  It didn’t.  —  For almost two years …

Researchers discover a new strain of Linux malware called Shikitega that infects servers and IoT devices with stealth and sophistication, making detection tough (Dan Goodin/Ars Technica)

Dan Goodin / Ars Technica:
Researchers discover a new strain of Linux malware called Shikitega that infects servers and IoT devices with stealth and sophistication, making detection tough  —  With polymorphic encoding and a multistage infection chain, Shikitega is hard to detect.  —  Researchers this week unveiled …

macOS Ventura review: Stage Manager has some good ideas and runs much better on the Mac than on the iPad, the new System Settings app is inconsistent, and more (Andrew Cunningham/Ars Technica)

Andrew Cunningham / Ars Technica:
macOS Ventura review: Stage Manager has some good ideas and runs much better on the Mac than on the iPad, the new System Settings app is inconsistent, and more  —  A pleasantly surprising new multitasking UI and app redesigns define macOS 13.  —  If you asked me to tell you all the most exciting things …