Current:Home > Contact'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings -MoneyMatrix
'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings
View
Date:2025-04-15 14:44:57
The U.S. Cybersecurity and Infrastructure Security Agency added a vulnerability in Microsoft's Windows 10 software to a list of exploited security weak spots.
CISA said that "Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution," in a listing added to the agency's Known Exploited Vulnerability Catalog Monday.
The listing advised users to stop using software or utilize a patch through Windows.
CISA said that it did not know if the vulnerability, titled CVE-2018-0824, had been used in a ransomware campaign but a CISCO Talos report released Thursday said that a Chinese hacking group utilized the vulnerability in an attack on a Taiwanese government research center. The report said the center was, "likely compromised."
Second organization issues Windows warning
CISA was not the only organization to issue a warning to Windows users Monday.
"Criminals are preying on Windows users yet again, this time in an effort to hit them with a keylogger that can also steal credentials and take screenshots," enterprise technology news site the Register reported Monday.
The outlet reported that FortiGuard Labs, a threat intelligence agency, found an uptick in malware attacks with SnakeKeylogger. The malware is known to steal credentials and record keystrokes in infected machines.
It was originally sold on a subscription basis on Russian crime forums and became a major threat in 2020, according to the Register.
In 2022 Check Point Research, a cyber security firm, warned that the malware, "is usually spread through emails that include docx or xlsx attachments with malicious macros," and through PDF files.
The warnings come on the heels of the "Crowdstrike outage" in July, where a defective software update rendered devices using Windows software useless for hours.
veryGood! (2785)
Related
- Residents worried after ceiling cracks appear following reroofing works at Jalan Tenaga HDB blocks
- McDonald’s burger empire set for unprecedented growth over the next 4 years with 10,000 new stores
- New Mexico Looks to Address Increasing Aridity With Brackish and Produced Water. Experts Are ‘Skeptical’
- Taylor Swift is named Time Magazine’s person of the year
- Tarte Shape Tape Concealer Sells Once Every 4 Seconds: Get 50% Off Before It's Gone
- Chicago man pleads guilty in shooting of three undercover federal officers
- Oregon power company to pay nearly $300 million to settle latest lawsuit over 2020 wildfires
- Biden backs Native American athletes' quest to field lacrosse team at 2028 Olympics
- Bill Belichick's salary at North Carolina: School releases football coach's contract details
- 160 funny Christmas jokes 'yule' love this holiday season
Ranking
- Could Bill Belichick, Robert Kraft reunite? Maybe in Pro Football Hall of Fame's 2026 class
- Daisy Jones’ Camila Morrone Reveals How Pregnant BFF Suki Waterhouse Will Be as a Mom
- Red Hot Chili Peppers extend Unlimited Love tour to 2024 with 16 new North America dates
- Study: Someone bet against the Israeli stock market in the days before Hamas' Oct. 7 attack
- Newly elected West Virginia lawmaker arrested and accused of making terroristic threats
- US finds both sides in Sudan conflict have committed atrocities in Darfur
- Aaron Rodgers defends Zach Wilson, rails against report saying Jets QB was reluctant to start again
- When is the Christmas shipping deadline for 2023? See the last days to order and mail packages.
Recommendation
Friday the 13th luck? 13 past Mega Millions jackpot wins in December. See top 10 lottery prizes
Union representing German train drivers calls strike that will hit passenger services
The Excerpt podcast: Candidates get set for fourth Republican primary debate
Legal battle brewing between coffee brands by Taylor Sheridan, Cole Hauser of 'Yellowstone'
The FTC says 'gamified' online job scams by WhatsApp and text on the rise. What to know.
US experts are in Cyprus to assist police investigating alleged sanctions evasion by Russians
Cleveland Guardians win 2024 MLB draft lottery despite 2% chance: See the full draft order.
Heavy fighting across Gaza halts most aid delivery, leaves civilians with few places to seek safety