Search results for Threat Intelligence Group
AI & Enterprise
Google works with FBI to disrupt \'NetNut\' malicious proxy network
Google Threat Intelligence Group said on July 6 it worked with the FBI and industry partners to disrupt NetNut, one of the world’s largest malicious residential proxy networks. It said the proxy network industry is closely interconnected through operators trading botnet resources. Google estimated NetNut infected and controlled at least 2 million devices via the BadBox 2.0 botnet and trojan apps, including many smart TVs and set-top boxes.
AI & Enterprise
Google spots first real-world AI exploit of zero-day vulnerability
Google confirmed the first real-world case of cyber criminals using AI to find and weaponise a zero-day vulnerability, The Register reported. Google’s Threat Intelligence Group said a two-factor authentication bypass bug in a popular open-source web-based management platform was abused by criminals planning a large intrusion campaign. Google said it worked with the vendor to quietly deploy a patch before the campaign escalated and may have blocked the attack in advance.
AI & Enterprise
North Korean hackers hit Axios NPM package in supply-chain attack, millions distributed in 3 hours
North Korean hackers tampered with the Axios NPM package in a supply-chain attack that triggered millions of malicious distributions in about three hours, SecurityWeek reported. Google Threat Intelligence Group attributed the attack to UNC1069. Attackers posted backdoored Axios versions 1.14.1 and 0.30.4 to the NPM registry, designed to auto-run a malicious payload on Windows, macOS and Linux. The versions were later removed.