Current:Home > Invest'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings -Horizon Finance School
'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings
View
Date:2025-04-16 03:51:06
The U.S. Cybersecurity and Infrastructure Security Agency added a vulnerability in Microsoft's Windows 10 software to a list of exploited security weak spots.
CISA said that "Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution," in a listing added to the agency's Known Exploited Vulnerability Catalog Monday.
The listing advised users to stop using software or utilize a patch through Windows.
CISA said that it did not know if the vulnerability, titled CVE-2018-0824, had been used in a ransomware campaign but a CISCO Talos report released Thursday said that a Chinese hacking group utilized the vulnerability in an attack on a Taiwanese government research center. The report said the center was, "likely compromised."
Second organization issues Windows warning
CISA was not the only organization to issue a warning to Windows users Monday.
"Criminals are preying on Windows users yet again, this time in an effort to hit them with a keylogger that can also steal credentials and take screenshots," enterprise technology news site the Register reported Monday.
The outlet reported that FortiGuard Labs, a threat intelligence agency, found an uptick in malware attacks with SnakeKeylogger. The malware is known to steal credentials and record keystrokes in infected machines.
It was originally sold on a subscription basis on Russian crime forums and became a major threat in 2020, according to the Register.
In 2022 Check Point Research, a cyber security firm, warned that the malware, "is usually spread through emails that include docx or xlsx attachments with malicious macros," and through PDF files.
The warnings come on the heels of the "Crowdstrike outage" in July, where a defective software update rendered devices using Windows software useless for hours.
veryGood! (24215)
Related
- Whoopi Goldberg is delightfully vile as Miss Hannigan in ‘Annie’ stage return
- High rents outpace federal disability payments, leaving many homeless
- This city is the most appealing among aspiring Gen Z homeowners
- 2016: California’s ‘Staggering’ Leak Could Spew Methane for Months
- The Best Stocking Stuffers Under $25
- 2015: The Year the Environmental Movement Knocked Out Keystone XL
- TransCanada Launches Two Legal Challenges to Obama’s Rejection of Keystone
- Texas Fracking Zone Emits 90% More Methane Than EPA Estimated
- Former Syrian official arrested in California who oversaw prison charged with torture
- Pippa Middleton Makes Rare Public Appearance at King Charles III and Queen Camilla’s Coronation
Ranking
- Global Warming Set the Stage for Los Angeles Fires
- The Heartbreak And Cost Of Losing A Baby In America
- J&J tried to block lawsuits from 40,000 cancer patients. A court wants answers
- Can therapy solve racism?
- Woman dies after Singapore family of 3 gets into accident in Taiwan
- AOC, Sanders Call for ‘Climate Emergency’ Declaration in Congress
- Virginia graduation shooting that killed teen, stepdad fueled by ongoing dispute, police say
- Daily 'breath training' can work as well as medicine to reduce high blood pressure
Recommendation
Travis Hunter, the 2
Judge temporarily blocks Florida ban on trans minor care, saying gender identity is real
Prince George Looks All Grown-Up at King Charles III's Coronation
Missouri man Michael Tisius executed despite appeals from former jurors
Angelina Jolie nearly fainted making Maria Callas movie: 'My body wasn’t strong enough'
Snowpack Near Record Lows Spells Trouble for Western Water Supplies
What Chemicals Are Used in Fracking? Industry Discloses Less and Less
Today’s Climate: June 10, 2010