Current:Home > Finance'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings -Global Capital Summit
'Criminals are preying on Windows users': Software subject of CISA, cybersecurity warnings
View
Date:2025-04-13 08:13:23
The U.S. Cybersecurity and Infrastructure Security Agency added a vulnerability in Microsoft's Windows 10 software to a list of exploited security weak spots.
CISA said that "Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution," in a listing added to the agency's Known Exploited Vulnerability Catalog Monday.
The listing advised users to stop using software or utilize a patch through Windows.
CISA said that it did not know if the vulnerability, titled CVE-2018-0824, had been used in a ransomware campaign but a CISCO Talos report released Thursday said that a Chinese hacking group utilized the vulnerability in an attack on a Taiwanese government research center. The report said the center was, "likely compromised."
Second organization issues Windows warning
CISA was not the only organization to issue a warning to Windows users Monday.
"Criminals are preying on Windows users yet again, this time in an effort to hit them with a keylogger that can also steal credentials and take screenshots," enterprise technology news site the Register reported Monday.
The outlet reported that FortiGuard Labs, a threat intelligence agency, found an uptick in malware attacks with SnakeKeylogger. The malware is known to steal credentials and record keystrokes in infected machines.
It was originally sold on a subscription basis on Russian crime forums and became a major threat in 2020, according to the Register.
In 2022 Check Point Research, a cyber security firm, warned that the malware, "is usually spread through emails that include docx or xlsx attachments with malicious macros," and through PDF files.
The warnings come on the heels of the "Crowdstrike outage" in July, where a defective software update rendered devices using Windows software useless for hours.
veryGood! (86)
Related
- Apple iOS 18.2: What to know about top features, including Genmoji, AI updates
- Colorado City Vows to Be Carbon Neutral, Defying Partisan Politics
- The missing submersible was run by a video game controller. Is that normal?
- Why Melissa McCarthy Is Paranoid to Watch Gilmore Girls With Her Kids at Home
- SFO's new sensory room helps neurodivergent travelers fight flying jitters
- Why Kourtney Kardashian and Travis Barker Are Officially Done With IVF
- Some Utilities Want a Surcharge to Let the Sunshine In
- Greenland’s Nearing a Climate Tipping Point. How Long Warming Lasts Will Decide Its Fate, Study Says
- Meta donates $1 million to Trump’s inauguration fund
- Hospitals create police forces to stem growing violence against staff
Ranking
- Cincinnati Bengals quarterback Joe Burrow owns a $3 million Batmobile Tumbler
- Republican Will Hurd announces he's running for president
- Miley Cyrus Defends Her Decision to Not Tour in the Near Future
- Hospitals create police forces to stem growing violence against staff
- Tree trimmer dead after getting caught in wood chipper at Florida town hall
- House sidesteps vote on Biden impeachment resolution amid GOP infighting
- Mama June Reveals What's Next for Alana Honey Boo Boo Thompson After High School Graduation
- Republican Will Hurd announces he's running for president
Recommendation
Juan Soto to be introduced by Mets at Citi Field after striking record $765 million, 15
America’s First Offshore Wind Farm to Start Construction This Summer
Parkinson's Threatened To Tear Michael J. Fox Down, But He Keeps On Getting Up
Taylor Swift Announces Unheard Midnights Vault Track and Karma Remix With Ice Spice
Jamie Foxx reps say actor was hit in face by a glass at birthday dinner, needed stitches
College Baseball Player Angel Mercado-Ocasio Dead at 19 After Field Accident
The abortion pill mifepristone has another day in federal court
Hunter Biden to appear in court in Delaware in July