Google Chrome Zero-Day CVE-2025-2783 Exploited by TaxOff to Deploy Trinper Backdoor
A now-patched security flaw in Google Chrome was exploited as a zero-day by a threat actor known as TaxOff to deploy a backdoor codenamed Trinper
Stay protected online with the latest Antivirus updates, reviews, and cyber threats insights – your central hub for information security news.
Search across headline titles and summaries.
Background for this topic.
Antivirus is software designed to detect, prevent, and remove malicious software, commonly known as malware, from computers and networks. In the realm of information security, antivirus plays a crucial role by serving as the first line of defense against a wide variety of cyber threats, including viruses, worms, trojans, ransomware, spyware, and adware.
This software employs various methods to safeguard devices and data, including signature-based detection, which relies on a database of known malware signatures, heuristic analysis to identify new, previously unknown threats based on behavior, and real-time scanning to constantly monitor system activity. Antivirus programs often come with additional features such as firewall protection, email protection, and web browsing safeguards to provide a more comprehensive security solution.
In the ever-evolving landscape of cybersecurity, antivirus solutions are regularly updated to combat the latest threats. Their effectiveness relies on the timely application of these updates and the use of multi-layered security strategies, as no single tool can guarantee complete protection in the face of sophisticated and continuously changing cyber attacks.
Weekly headline count for the current query.
A now-patched security flaw in Google Chrome was exploited as a zero-day by a threat actor known as TaxOff to deploy a backdoor codenamed Trinper
Threat actors with links to the Play ransomware family exploited a recently patched security flaw in Microsoft Windows as a zero-day as part of an attack targeting an unnamed organization in the United States
Trend Micro discovered that old Atlassian Confluence versions that were affected by CVE-2023-22527 are being exploited using a new in-memory fileless backdoor.
CVE-2024-21412 was used to evade Microsoft Defender SmartScreen and implant victims with DarkMe
The APT group Water Hydra has been exploiting the zero-day Microsoft Defender SmartScreen vulnerability (CVE-2024-21412) in its campaigns targeting financial market traders. This vulnerability, which has now been patched by Microsoft, was discovered and disclosed by the Trend Micro Zero Day Initiative.
A Phemedrone information-stealing malware campaign exploits a Microsoft Defender SmartScreen vulnerability (CVE-2023-36025) to bypass Windows security prompts when opening URL files. [...]
This blog entry details how Trend Micro Cloud One™ – Workload Security and Trend Micro Vision One™ effectively detected and blocked the abuse of the CVE-2020-14882 WebLogic vulnerability in affected endpoints.
We provide a guide to detecting Dirty Pipe, a Linux kernel vulnerability tracked as CVE-2022-0847.
This blog discusses how CVE-2021-4034 can be detected and blocked using Trend Micro™ Vision One™ and Trend Micro Cloud One™.