Current:Home > My'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings -NextWave Wealth Hub
'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings
Poinbank View
Date:2025-04-10 00:34:31
The U.S. Cybersecurity and Infrastructure Security Agency added a vulnerability in Microsoft's Windows 10 software to a list of exploited security weak spots.
CISA said that "Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution," in a listing added to the agency's Known Exploited Vulnerability Catalog Monday.
The listing advised users to stop using software or utilize a patch through Windows.
CISA said that it did not know if the vulnerability, titled CVE-2018-0824, had been used in a ransomware campaign but a CISCO Talos report released Thursday said that a Chinese hacking group utilized the vulnerability in an attack on a Taiwanese government research center. The report said the center was, "likely compromised."
Second organization issues Windows warning
CISA was not the only organization to issue a warning to Windows users Monday.
"Criminals are preying on Windows users yet again, this time in an effort to hit them with a keylogger that can also steal credentials and take screenshots," enterprise technology news site the Register reported Monday.
The outlet reported that FortiGuard Labs, a threat intelligence agency, found an uptick in malware attacks with SnakeKeylogger. The malware is known to steal credentials and record keystrokes in infected machines.
It was originally sold on a subscription basis on Russian crime forums and became a major threat in 2020, according to the Register.
In 2022 Check Point Research, a cyber security firm, warned that the malware, "is usually spread through emails that include docx or xlsx attachments with malicious macros," and through PDF files.
The warnings come on the heels of the "Crowdstrike outage" in July, where a defective software update rendered devices using Windows software useless for hours.
veryGood! (844)
Related
- Louvre will undergo expansion and restoration project, Macron says
- Tiffany Haddish charged with DUI after arrest in Beverly Hills
- At least 9 people killed in Syrian government shelling of a rebel-held village, the opposition says
- How making jewelry got me out of my creative rut
- Are Instagram, Facebook and WhatsApp down? Meta says most issues resolved after outages
- U.S. airlines lose 2 million suitcases a year. Where do they all go?
- The Excerpt podcast: Cease-fire between Hamas and Israel begins, plus more top stories
- Mississippi keeps New Year's Six hopes alive with Egg Bowl win vs. Mississippi State
- Realtor group picks top 10 housing hot spots for 2025: Did your city make the list?
- Person dead after officer-involved shooting outside Salem
Ranking
- The 401(k) millionaires club keeps growing. We'll tell you how to join.
- Appeals court says Georgia may elect utility panel statewide, rejecting a ruling for district voting
- Oscar Pistorius granted parole: Who is the South African Olympic, Paralympic runner
- Victims in Niagara Falls border bridge crash identified as Western New York couple
- 'As foretold in the prophecy': Elon Musk and internet react as Tesla stock hits $420 all
- Palestinian families rejoice over release of minors and women in wartime prisoner swap
- Militants with ties to the Islamic State group kill at least 14 farmers in an attack in east Congo
- Kangaroo playing air guitar wins Comedy Wildlife Photography Awards: See funniest photos
Recommendation
'Survivor' 47 finale, part one recap: 2 players were sent home. Who's left in the game?
AP Week in Pictures: North America
Powerball winning numbers for Nov. 22 drawing: Check your tickets for $313 million jackpot
Buyers worldwide go for bigger cars, erasing gains from cleaner tech. EVs would help
Charges tied to China weigh on GM in Q4, but profit and revenue top expectations
5 family members and a commercial fisherman neighbor are ID’d as dead or missing in Alaska landslide
A newly formed alliance between coup-hit countries in Africa’s Sahel is seen as tool for legitimacy
At least 9 people killed in Syrian government shelling of a rebel-held village, the opposition says