China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor
중국 해킹 그룹이 Sogou 입력기 결함을 이용해 GRAYRABBIT 백도어를 설치했다.
A Chinese hacking group exploited a flaw in Sogou Input Method to install the GRAYRABBIT backdoor.
AI가 선별한 아티클
중국 해킹 그룹이 Sogou 입력기 결함을 이용해 GRAYRABBIT 백도어를 설치했다.
A Chinese hacking group exploited a flaw in Sogou Input Method to install the GRAYRABBIT backdoor.
구글이 Windows용 Gemini 데스크톱 앱을 출시했다.
Google has launched the Gemini desktop app for Windows.
Four spy groups가 같은 Chrome 및 Windows 취약점을 사용하여 공격을 감행했습니다.
Four spy groups exploited the same vulnerabilities in Chrome and Windows using the BlueMoon exploit kit.
마이크로소프트가 974개의 취약점을 패치하며 기록을 경신했다.
Microsoft sets a record by patching 974 vulnerabilities, including two actively exploited zero-days.
마이크로소프트가 보안 취약점 974개를 수정하는 패치를 발표했다.
Microsoft issued updates to fix 974 security vulnerabilities, the largest patch batch ever.
REVSTEALER와 연결된 네 가지 모듈이 윈도우 업데이트와 디펜더를 비활성화합니다.
Four modules linked to REVSTEALER disable Windows Update and Defender.
BraZetsu 악성코드는 감염된 윈도우 시스템을 범죄 시장의 재고로 전환합니다.
BraZetsu malware turns compromised Windows systems into inventory for criminal marketplaces.
가짜 소프트웨어 설치 프로그램이 윈도우 업데이트를 비활성화하고 Microsoft Defender를 약화시키고 있다.
Fake software installers disable Windows Update and weaken Microsoft Defender.
오프라인 LG TV와 연결 시 Windows에서 제조사 앱 설치를 차단하는 방법 설명.
How to block manufacturer app installations when connecting offline LG TVs to Windows.
TerminalFix가 Cloudflare CAPTCHA를 이용해 악성 명령어를 실행하도록 유도하는 기법을 설명합니다.
TerminalFix uses fake Cloudflare CAPTCHAs to trick users into running malicious commands.
Windows 라이선스 환불 요구를 위한 Refund4Freedom 캠페인 소개.
Introduction to Refund4Freedom campaign for refunding unwanted Windows licenses.
APT28과 연결된 HOOKEDGE 백도어가 유럽 정부를 타겟으로 하고 있다.
APT28-linked HOOKEDGE backdoor targets European governments.
SLEEPWALKER라는 새로운 백도어가 특정 패킷을 대기하며 독자적인 바이트코드를 실행합니다.
A new backdoor named SLEEPWALKER waits for a specific packet and then executes its own bytecode.
UAT-10147 사이버 범죄 그룹의 AI 기반 서버 공격 개요.
Overview of AI-based server attacks by cybercrime group UAT-10147.
NetBSD 도입으로 영국 대기업의 IT 환경과 관리자의 삶이 개선됨.
The adoption of NetBSD improved IT environment and the personal life of manager in a UK company.
Microsoft Defender의 드라이버가 보안 소프트웨어 삭제에 악용될 수 있다는 연구 결과.
Research reveals Microsoft Defender's driver can be exploited to delete security software.
원치 않는 AI 기능 비활성화 방법을 정리한 실용 가이드입니다.
A practical guide on disabling unwanted AI features in various tools.
16개 타이포 스쿼팅 루비 젬 패키지가 브라우저 자격 증명 및 암호화 지갑을 탈취합니다.
16 typosquatted RubyGems packages steal browser credentials and crypto wallets.
이번 주 해킹 뉴스: VMware 취약점, 윈도우 0-Day, MCP 공격 등 다룸.
Weekly recap of hacking news: VMware exploits, Windows 0-Day, MCP attacks, and more.
Mustang Panda가 서명된 윈도우 루트킷으로 CoolClient 백도어를 업데이트했습니다.
Mustang Panda has updated the CoolClient backdoor with a signed Windows rootkit.
Chrome DevTools를 이용한 인증 세션 탈취 기술이 공개되었습니다.
A technique using Chrome DevTools for authenticated session hijacking has been revealed.
라자루스 그룹이 윈도우 취약점을 악용하여 백도어를 배포했다.
Lazarus Group exploits Windows zero-day to deploy a backdoor.
마이크로소프트가 398개의 보안 취약점을 수정한 업데이트를 발표했습니다.
Microsoft has released updates to fix 398 security vulnerabilities.
마이크로소프트가 398개의 취약점을 패치했습니다.
Microsoft patches 398 vulnerabilities, including an actively exploited Windows driver zero-day.
윈도우 11에서 USB 자동 설치 기능을 악용해 시스템 전체를 장악할 수 있는 방법이 발견됐다.
Researchers discovered a way to abuse USB auto-install on Windows 11 for full system takeover.
새로운 패스키 공격이 개인 키를 복구하거나 피싱 저항 MFA를 우회하는 방법을 시연했습니다.
New passkey attacks demonstrated methods to recover private keys or bypass phishing-resistant MFA.
goshot는 아름다운 코드 스크린샷을 생성하는 Go 라이브러리이자 CLI입니다.
goshot is a Go library and CLI for generating beautiful code screenshots.
GPU와 CPU 상태를 간편하게 모니터링할 수 있는 Windows 도구 GpuTray 소개.
Introducing GpuTray, a lightweight tool for easy GPU and CPU monitoring in the Windows system tray.
Lima v2.2는 Windows 게스트 지원을 추가하여 다양한 OS 가상 머신을 부팅할 수 있게 했다.
Lima v2.2 adds Windows guest support, allowing various OS virtual machines to boot.
이라크의 해킹 그룹, NightLedger 백도어 공격을 개시.
Iranian hacking group Nimbus Manticore launches attacks using NightLedger backdoor.