Security Affairs

Security Affairs Read, think, share … Security is everyone’s responsibility

  • PDFSIDER Malware – Exploitation of DLL Side-Loading for AV and EDR Evasion
    by Pierluigi Paganini on January 20, 2026 at 9:17 pm

    Threat actors use PDFSIDER malware with social engineering and DLL sideloading to bypass AV/EDR, and ransomware gangs already abuse it. Resecurity has learned about PDFSIDER during an investigation of a network intrusion attempt that was successfully prevented by a Fortune 100 energy corporation. The threat actor contacted their staff, impersonating technical support, and used social

  • Access broker caught: Jordanian pleads guilty to hacking 50 companies
    by Pierluigi Paganini on January 20, 2026 at 7:09 pm

    A Jordanian man pleaded guilty in the US to selling illegal access to 50 compromised enterprise networks after an undercover sting. A Jordanian national Feras Khalil Ahmad Albashiti (40), living in Georgia, pleaded guilty in a US court to acting as an access broker, selling unauthorized access to the networks of at least 50 companies.

  • Critical TP-Link VIGI camera flaw allowed remote takeover of surveillance systems
    by Pierluigi Paganini on January 20, 2026 at 3:20 pm

    TP-Link fixed a critical flaw that exposed over 32 VIGI C and VIGI InSight camera models to remote hacking, with over 2,500 internet-exposed devices identified. TP-Link fixed a high-severity flaw, tracked as CVE-2026-0629 (CVSS score 8.7), affecting over 32 VIGI C and VIGI InSight camera models. The vulnerability lets attackers on a local network bypass

  • Telegram-based illicit billionaire marketplace Tudou Guarantee stopped transactions
    by Pierluigi Paganini on January 20, 2026 at 9:45 am

    Major Telegram-based illicit marketplace Tudou Guarantee appears to be shutting down its operations, according to Elliptic. Blockchain cybersecurity firm Elliptic reports that Tudou Guarantee, a major Telegram-based illicit marketplace in Southeast Asia, has stopped transactions in its public groups after handling over $12 billion. The researchers noted that other services still run, so a full

  • UK NCSC warns of Russia-linked hacktivists DDoS attacks
    by Pierluigi Paganini on January 20, 2026 at 8:21 am

    The UK government warns Russia-linked hacktivists are still carrying out DDoS attacks on critical infrastructure and local government systems The UK government warns that Russia-linked hacktivists are continuing DDoS attacks against critical infrastructure and local government systems. “Today, 19th January 2026, the National Cyber Security Centre (NCSC) – a part of GCHQ – has issued an

  • Ransomware attack on Ingram Micro impacts 42,000 individuals
    by Pierluigi Paganini on January 19, 2026 at 6:29 pm

    Ingram Micro says a ransomware attack exposed personal data of about 42,000 people, including names, birth dates, SSNs, and job-related details. Ingram Micro is a global technology distributor and supply-chain services company. It acts as a middleman between IT vendors (like Microsoft, Cisco, HP, Apple, and cybersecurity firms) and businesses, resellers, and service providers, helping

  • StealC malware control panel flaw leaks details on active attacker
    by Pierluigi Paganini on January 19, 2026 at 2:26 pm

    Researchers uncovered an XSS flaw in StealC malware’s control panel, exposing key details about a threat actor using the info stealer. StealC is an infostealer that has been active since at least 2023, sold as Malware-as-a-Service to steal cookies and passwords. In 2025, its operators released StealC v2, but the web panel quickly leaked and

  • Hacker pleads guilty to hacking Supreme Court, AmeriCorps, and VA Systems
    by Pierluigi Paganini on January 19, 2026 at 8:15 am

    An actor who goes online with the alias @ihackthegovernment posted stolen personal data from his victims, including the U.S. Supreme Court. Nicholas Moore, 24, from Tennessee, pleaded guilty to repeatedly hacking the U.S. Supreme Court’s electronic filing system. Court documents reveal he used his Instagram account to leak data from several of his victims. “Nicholas

  • Hacktivists hijacked Iran ’s state TV to air anti-regime messages and an appeal to protest from Reza Pahlavi
    by Pierluigi Paganini on January 18, 2026 at 10:49 pm

    Activists hacked Iran ’s Badr satellite, briefly broadcasting Reza Pahlavi’s anti-regime protest messages on state TV channels. Anti-regime activists briefly took control of Iran ’s Badr satellite, hijacking state TV to broadcast Crown Prince Reza Pahlavi’s calls for protests against the Islamic Republic. Pahlavi’s media team also shared the footage of the hack. “Several Iranian

  • GootLoader uses malformed ZIP files to bypass security controls
    by Pierluigi Paganini on January 18, 2026 at 6:22 pm

    GootLoader malware uses malformed ZIP files made of hundreds of concatenated archives to evade detection. GootLoader is used by ransomware actors for initial access, then handed off to others. Built to evade detection, it accounted for 11% of bypassing malware in the past years. GootLoader runs on an access-a-as-a-service model, it is used by different groups to

Share Websitecyber
We are an ethical website cyber security team and we perform security assessments to protect our clients.