Current:Home > Invest'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings -Infinite Edge Capital
'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings
View
Date:2025-04-16 06:57:08
The U.S. Cybersecurity and Infrastructure Security Agency added a vulnerability in Microsoft's Windows 10 software to a list of exploited security weak spots.
CISA said that "Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution," in a listing added to the agency's Known Exploited Vulnerability Catalog Monday.
The listing advised users to stop using software or utilize a patch through Windows.
CISA said that it did not know if the vulnerability, titled CVE-2018-0824, had been used in a ransomware campaign but a CISCO Talos report released Thursday said that a Chinese hacking group utilized the vulnerability in an attack on a Taiwanese government research center. The report said the center was, "likely compromised."
Second organization issues Windows warning
CISA was not the only organization to issue a warning to Windows users Monday.
"Criminals are preying on Windows users yet again, this time in an effort to hit them with a keylogger that can also steal credentials and take screenshots," enterprise technology news site the Register reported Monday.
The outlet reported that FortiGuard Labs, a threat intelligence agency, found an uptick in malware attacks with SnakeKeylogger. The malware is known to steal credentials and record keystrokes in infected machines.
It was originally sold on a subscription basis on Russian crime forums and became a major threat in 2020, according to the Register.
In 2022 Check Point Research, a cyber security firm, warned that the malware, "is usually spread through emails that include docx or xlsx attachments with malicious macros," and through PDF files.
The warnings come on the heels of the "Crowdstrike outage" in July, where a defective software update rendered devices using Windows software useless for hours.
veryGood! (74)
Related
- 'Most Whopper
- West Virginia wildfires: National Guard and rain help to battle blazes, see map of fires
- March Madness picks: Our Saturday bracket predictions for 2024 NCAA women's tournament
- Barn collapse kills 1 man, injures another in southern Illinois
- A White House order claims to end 'censorship.' What does that mean?
- Riley Strain: Timeline from student's disappearance until his body was found in Nashville
- Deadly attack on Moscow concert hall shakes Russian capital and sows doubts about security
- Turn Your Bathroom Into a Spa-Like Oasis with These Essential Products from Amazon's Big Spring Sale
- Former Danish minister for Greenland discusses Trump's push to acquire island
- 18-year-old charged with vehicular homicide in crash that killed a woman and 3 children in a van
Ranking
- Former longtime South Carolina congressman John Spratt dies at 82
- South Dakota man sentenced to 10 years for manslaughter in 2013 death of girlfriend
- What a Thrill! See the Cast of Troop Beverly Hills Then and Now
- Nevada regulators fine Laughlin casino record $500,000 for incidents involving security officers
- B.A. Parker is learning the banjo
- King Charles III and Princess Kate have cancer. What they've said, what to know
- Laurent de Brunhoff, ‘Babar’ heir and author, dies at age 98
- Shawn Johnson's Kids Are Most Excited For This Part of Their Trip to the 2024 Olympics
Recommendation
New Mexico governor seeks funding to recycle fracking water, expand preschool, treat mental health
Men’s March Madness Saturday recap: Creighton outlasts Oregon; Tennessee, Illinois win
A second man is charged in connection with the 2005 theft of ruby slippers worn by Dorothy in The Wizard of Oz
Kansas started at No. 1 and finished March Madness with a second-round loss. What went wrong?
Juan Soto praise of Mets' future a tough sight for Yankees, but World Series goal remains
Psst, Amazon's Big Spring Sale Has The Stylish & Affordable Swimwear You've Been Looking For
Stellantis recalls nearly 285,000 Dodge, Chrysler cars over potentially deadly airbag defect
A man who survived a California mountain lion attack that killed his brother is expected to recover