BumbleBee Malware, Hostinger’s Preview Domain Feature is Abused, Twitter API Leak enables Bot army: Latest Cyber Security Finding - 06 Aug

BumbleBee Malware, Hostinger’s Preview Domain Feature is Abused, Twitter API Leak enables Bot army: Latest Cyber Security Finding - 06 Aug

We are back with some of the biggest Cybersecurity stories around the Globe. These stories are only some of the many stories our team uncovered. For a more complete overview of cybersecurity stories and to request a product demo, visit us at?www.cloudsek.com

CloudSEK’s Attack Surface Monitoring Platform, uncovered 3207 apps, leaking Twitter API keys, that can be utilized to gain access to or to take over Twitter accounts.


?? Fright of the Bumblebee: Analysis of Bumblebee Malware Loader

A Blog Article by Anandeshwar "saab_sec?? " Unnikrishnan and Aastha Mittal

This article explores and decodes the Bumblebee malware loaders:

  • Technical features
  • Logic flow
  • Exploitation process
  • Network maintenance
  • Unique features

???Read the Full?Article


?? Hostinger’s Preview Domain Feature Abused to Launch Phishing?Campaigns and Evade Detection

We have uncovered a new phishing tactic used by threat actors to target Indian banking customers. XVigil has highlighted the recent increase in Hostinger preview domains being used to host phishing sites. The preview domain feature enables access to a site even before it is accessible globally.

  • Threat actors have been consistently launching campaigns to defraud Indian banking users.
  • Campaigns are hosted on phishing domains that are distributed via text, email, and social media.
  • However, real-time monitoring has enabled banks to detect and take down phishing sites quickly.
  • Hence, threat actors are constantly looking for novel techniques to evade early detection.
  • The latest method involves the domain preview feature provided by Hostinger. This feature allows threat actors to distribute phishing URLs during the DNS Zone Propagation time (time taken for a newly registered domain to start working globally)

???Read the Full?Report

Related Articles

-- See you next week with more!! ??

要查看或添加评论,请登录

CloudSEK的更多文章

社区洞察

其他会员也浏览了