Current:Home > reviews'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings -Secure Growth Academy
'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings
View
Date:2025-04-14 14:10:07
The U.S. Cybersecurity and Infrastructure Security Agency added a vulnerability in Microsoft's Windows 10 software to a list of exploited security weak spots.
CISA said that "Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution," in a listing added to the agency's Known Exploited Vulnerability Catalog Monday.
The listing advised users to stop using software or utilize a patch through Windows.
CISA said that it did not know if the vulnerability, titled CVE-2018-0824, had been used in a ransomware campaign but a CISCO Talos report released Thursday said that a Chinese hacking group utilized the vulnerability in an attack on a Taiwanese government research center. The report said the center was, "likely compromised."
Second organization issues Windows warning
CISA was not the only organization to issue a warning to Windows users Monday.
"Criminals are preying on Windows users yet again, this time in an effort to hit them with a keylogger that can also steal credentials and take screenshots," enterprise technology news site the Register reported Monday.
The outlet reported that FortiGuard Labs, a threat intelligence agency, found an uptick in malware attacks with SnakeKeylogger. The malware is known to steal credentials and record keystrokes in infected machines.
It was originally sold on a subscription basis on Russian crime forums and became a major threat in 2020, according to the Register.
In 2022 Check Point Research, a cyber security firm, warned that the malware, "is usually spread through emails that include docx or xlsx attachments with malicious macros," and through PDF files.
The warnings come on the heels of the "Crowdstrike outage" in July, where a defective software update rendered devices using Windows software useless for hours.
veryGood! (345)
Related
- In ‘Nickel Boys,’ striving for a new way to see
- 2024 NFL mock draft: Six QBs make first-round cut as trade possibilities remain
- Horoscopes Today, April 22, 2024
- EPA Faulted for Wasting Millions, Failing to Prevent Spread of Superfund Site Contamination
- Sam Taylor
- Taylor Swift reveals inspiration for 5 'Tortured Poets Department' songs on Amazon Music
- ‘Catch-and-kill’ to be described to jurors as testimony resumes in hush money trial of Donald Trump
- Owen Wilson and His Kids Make Rare Public Appearance at Soccer Game in Los Angeles
- Angelina Jolie nearly fainted making Maria Callas movie: 'My body wasn’t strong enough'
- Minnesota and other Democratic-led states lead pushback on censorship. They’re banning the book ban
Ranking
- IRS recovers $4.7 billion in back taxes and braces for cuts with Trump and GOP in power
- Why Blake Shelton Jokes He Feels Guilty in Gwen Stefani Relationship
- Denver Broncos unveil new uniforms with 'Mile High Collection'
- Cocaine, carjacking, murder: Probe into Florida woman's brazen kidnapping expands
- California DMV apologizes for license plate that some say mocks Oct. 7 attack on Israel
- Biden will send Ukraine air defense weapons, artillery once Senate approves, Zelenskyy says
- Arizona judge declares mistrial in the case of a rancher accused of fatally shooting a migrant
- Officials identify Marine who died during training near Camp Lejeune in North Carolina
Recommendation
Which apps offer encrypted messaging? How to switch and what to know after feds’ warning
Cocaine, carjacking, murder: Probe into Florida woman's brazen kidnapping expands
Florida State vs. ACC: Takeaways from court hearing as FSU's lawsuit hits a snag
Jets trade quarterback Zach Wilson to the Broncos, AP source says
Former longtime South Carolina congressman John Spratt dies at 82
See the bronze, corgi-adorned statue honoring Queen Elizabeth II on her 98th birthday: Photos
Nelly Korda puts bid for 6th straight victory on hold after withdrawing from Los Angeles tourney
Prince Louis Is All Grown Up in Royally Sweet 6th Birthday Portrait