Showing posts with label Cyberattack. Show all posts
Showing posts with label Cyberattack. Show all posts

Kaspersky uncovers a new massive campaign spreading malware via WhatsApp

Targeting WhatsApp Desktop and WhatsApp Web users, the crimeware campaign distributes malicious VBScript files via direct messages on the platform. Victims have been identified across multiple countries and territories, including Malaysia, Brazil, Singapore, Taiwan and Vietnam, with the highest number of observed victims located in Malaysia. The use of multiple languages in file names also points to broad regional targeting, especially across Europe.

An increased number of Linux and Windows users are encountering exploits: Kaspersky report

Kaspersky’s latest report reveals that more #Windows and #Linux users were targeted by vulnerability exploits in the first half of 2025 compared to 2024. Attackers are actively taking advantage of bugs in operating systems, third-party apps, and browsers to gain unauthorized access.

🔐 Key findings:

✔️ Exploits targeting critical OS vulnerabilities jumped to 64% in Q2 2025 (from 48% in Q1).

✔️ Linux users saw nearly double the exploit encounters in early 2025 vs 2024.

✔️ Windows users also faced higher risk, with a steady upward trend across both Q1 and Q2 2025.

✔️ Registered CVEs are surging — from 2,600 monthly in early 2024 to 4,000+ monthly in 2025.

Experts warn that both new 0-day exploits and old vulnerabilities are fueling advanced #cyberattacks. #Kaspersky stresses the urgency of patching, monitoring, and deploying exploit-mitigation tools to protect systems before attackers strike.

📊 Full report here.


Sophos Uncovers Chinese Espionage Campaign in Southeast Asia

Sophos has uncovered a sophisticated Chinese espionage campaign targeting Southeast Asia! Their latest report reveals a nearly two-year-long operation involving well-known Chinese threat groups and previously unseen malware. 


Get to know how these cyberattacks are impacting government targets and why its crucial to understand the broader picture of these coordinated operations for enhancing organizational defenses.


#CyberSecurity #Sophos #Espionage #SoutheastAsia


Global Law Enforcers Seek Trend Micro’s Help in Taking Down Top Ransomware Threat Group LockBit

Trend Micro Incorporated (TYO: 4704; TSE: 4704), a global cybersecurity leader, today revealed its critical role in helping global law enforcement partners disrupt mega-ransomware group LockBit, and kill the viability of its long-term malware plans. Through undercover infiltration, Trend helped prevent the release of the group’s next malware products and automatically installed protection for Trend Micro customers, even before the group themselves had finished testing.


Photo by freestocks on Unsplash


Robert McArdle, a leader in Trend Micro’s cybercrime research team and collaborator with the Federal Bureau of Investigation (FBI) and National Crime Agency (NCA), said: “We are honored that our threat intelligence is uniquely valuable to global law enforcement in the shared mission to make the world safer.”


This group was responsible for about 25 percent* of all ransomware leaks in 2023 and caused billions of dollars in losses for thousands of global victims over the past four years. Due to the potential damage that this group can cause, the Philippine National Police (PNP) last year warned Filipinos about LockBit and recommended several cyber hygiene practices to avoid becoming a victim to the group.


McArdle continued, “Last week Trend secured global Microsoft users from a critical vulnerability and this week we were a part of dethroning the most critical threat actor group in the world. Now, insiders aren’t naïve enough to assume this will eliminate the crime group, but we know that no sane criminal would want to be involved with this group again.”


Details from behind the scenes are unfolding and include cryptocurrency seizure, arrests, indictments, imposing sanctions and additional technical support for victims. The operation took over LockBit’s leak site, disclosing information and personal identities of group members and details of their previous works. These actions essentially make the group unwelcome and untrusted in the cybercrime world—and therefore unviable as an underground business.


Ransomware is one of the most serious cyber threats facing organizations today, known for disrupting schools, hospitals, governments, and businesses and imperiling critical national infrastructure. It does all of this while lining the pockets of a few small cybercrime groups: last year, victims paid over $1 billion to these groups and their affiliates, a record figure.


This work ultimately supported the following outcomes:

  • Trend’s delivery of protection in advance against LockBit-NG-Dev for its customers.
  • The neutralization of a potentially prolific strain of ransomware—preventing its use in future enterprises these actors may look to run.
  • A law enforcement operation that will hopefully see the end of LockBit as we know it and sets a new benchmark for international collaboration across law enforcement and private partners.


While LockBit was, without doubt, the largest and most impactful Ransomware operation globally, this disruption makes it very clear that all criminal affiliates should strongly reconsider any involvement with them in the future and that in partnering with this organization, these associates have put themselves at increased risk of law enforcement action.


A blog covering the findings from Trend’s analysis of the next version of LockBit ransomware malware was issued by NCA and can be accessed here: https://research.trendmicro.com/lockbit-blog.


*Based on Trend Micro analysis and tracking of ransomware leak sites, LockBit accounted for approximately 25 percent of all ransomware leaks in 2023.

IBM Report Reveals Manufacturing Sector as Cyber Attack Prime Target in Asia Pacific

Photo by Tima Miroshnichenko



Per IBM Report, the Manufacturing Sector becomes Top Targeted for Cyber Attacks in Asia Pacific, as Critical Infrastructure Globally sees increased targeting

PLDT, Smart block more than 5 million malicious text messages in February

PLDT and its wireless unit Smart Communications, Inc. (Smart) prevented more than 5 million SMShing messages from reaching customers in the second month of the year. PLDT and Smart’s Cyber Security Operations Group (CSOG) also blocked more than 38,000 mobile numbers found to have been involved in fraudulent activities


ESET Threat Report details targeted attacks connected to the Russian invasion of Ukraine

ESET Threat Report details targeted attacks connected to the Russian invasion of Ukraine and how the war changed the threat landscape

Cyberattack Could Cost a Large Healthcare Organization US$23.3 million in Asia Pacific

A Frost & Sullivan study commissioned by Microsoft found that a cyberattack incident can cost a large healthcare organization in Asia Pacific an average of US$23.3 million in economic loss.