Current:Home > Contact'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings -BeyondProfit Compass
'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings
Chainkeen Exchange View
Date:2025-04-11 03:36:17
The U.S. Cybersecurity and Infrastructure Security Agency added a vulnerability in Microsoft's Windows 10 software to a list of exploited security weak spots.
CISA said that "Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution," in a listing added to the agency's Known Exploited Vulnerability Catalog Monday.
The listing advised users to stop using software or utilize a patch through Windows.
CISA said that it did not know if the vulnerability, titled CVE-2018-0824, had been used in a ransomware campaign but a CISCO Talos report released Thursday said that a Chinese hacking group utilized the vulnerability in an attack on a Taiwanese government research center. The report said the center was, "likely compromised."
Second organization issues Windows warning
CISA was not the only organization to issue a warning to Windows users Monday.
"Criminals are preying on Windows users yet again, this time in an effort to hit them with a keylogger that can also steal credentials and take screenshots," enterprise technology news site the Register reported Monday.
The outlet reported that FortiGuard Labs, a threat intelligence agency, found an uptick in malware attacks with SnakeKeylogger. The malware is known to steal credentials and record keystrokes in infected machines.
It was originally sold on a subscription basis on Russian crime forums and became a major threat in 2020, according to the Register.
In 2022 Check Point Research, a cyber security firm, warned that the malware, "is usually spread through emails that include docx or xlsx attachments with malicious macros," and through PDF files.
The warnings come on the heels of the "Crowdstrike outage" in July, where a defective software update rendered devices using Windows software useless for hours.
veryGood! (536)
Related
- 'Kraven the Hunter' spoilers! Let's dig into that twisty ending, supervillain reveal
- Spain has condemned inappropriate World Cup kiss. Can it now reckon with sexism in soccer?
- North Korea says it simulated nuclear attacks on South Korea and rehearsed occupation of its rival
- Bear cub with head stuck in plastic container rescued by park manager, shared on Instagram
- Arkansas State Police probe death of woman found after officer
- Saudi man sentenced to death for tweets in harshest verdict yet for online critics
- LOOK: World record 92,003 fans watch Nebraska volleyball match at Memorial Stadium
- Charges won't be filed in fatal shooting of college student who went to wrong house
- Pregnant Kylie Kelce Shares Hilarious Question Her Daughter Asked Jason Kelce Amid Rising Fame
- Visual artists fight back against AI companies for repurposing their work
Ranking
- Justice Department, Louisville reach deal after probe prompted by Breonna Taylor killing
- North Carolina Gov. Cooper endorses fellow Democrat Josh Stein to succeed him
- NFL rule changes for 2023: Here's what they are and what they mean
- 'Unbelievable': Watch humpback whale awe Maine couple as it nears their boat
- Arkansas State Police probe death of woman found after officer
- Remains of Vermont World War II soldier to be buried at Arlington National Cemetery
- Kansas reporter files federal lawsuit against police chief who raided her newspaper’s office
- Simone Biles using new clothing line to get empowering message across to girls
Recommendation
Which apps offer encrypted messaging? How to switch and what to know after feds’ warning
'I love animals': Texas woman rescues 33 turtles after their pond dries up
Senate GOP leader Mitch McConnell appears to freeze up again, this time at a Kentucky event
Japan’s PM visits fish market, vows to help fisheries hit by China ban over Fukushima water release
Gen. Mark Milley's security detail and security clearance revoked, Pentagon says
Ohio governor reconvenes panel to redraw unconstitutional Statehouse maps
'The Amazing Race' Season 35 cast: Meet the teams racing around the world
U.S. citizen Paul Whelan appears in rare video inside Russian prison in clip aired by state media