Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    What is MicroSD Express? Everything You Need To Know

    June 8, 2025

    5 to avoid pressure washing mistakes

    June 8, 2025

    Spain vs Portugal Live Stream: How to see the Rashtra League Final 2025 from anywhere and for free

    June 8, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Output Messenger defects exploited as zero-day in espionage attacks
    Security

    Output Messenger defects exploited as zero-day in espionage attacks

    PineapplesUpdateBy PineapplesUpdateMay 13, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Output Messenger defects exploited as zero-day in espionage attacks
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Output Messenger defects exploited as zero-day in espionage attacks

    A türkiye-supported Siberspase Group exploited a zero-day vulnerability to attack output messenger users in Iraq.

    Microsoft danger intelligence analysts saw these attacks, also discovered security defects (Cve-2025-27920) In the LAN messaging application, a directory traversal vulnerability that can allow certified attackers to reach sensitive files outside the directory or deploy malicious payloads on the server’s startup folder.

    Developer of the app, Srimax, “Srimax,” Srimax, “Srimax,” Tell me In a security advisor released in December when the bug was patched with a release of output Messenger V2.0.63.

    Microsoft on Monday revealed that the hacking group (also tracked as sea turtles, silicone and unC1326) was targeted to users who did not update their systems to infect with malware after achieving access to the output messenger server manager.

    After compromising the server, marbled dust hackers can steal sensitive data, all users can use communication, replicate users, get access to internal systems, and cause operating disruption.

    “While we currently do not have visibility of how dust is certified in each example, we assess that the danger takes advantage of intercept, log, and reesne credentials with actor DNS kidnapping or typo-wheat, as it is already leveraged techniques by marble dust in malicious activity seen already,” Microsoft said,

    Next, the attackers deployed a back door (Osterverservice.exe) On the equipment of the victims, who examined connectivity against an attacker-controlled command-and-control domain (api.wordinfos (.) com) And then provided danger actors with additional information to identify each victim.

    Invasion chain
    Attack series (microsoft)

    In an example, the output messenger client on a victim’s device is connected to an IP address that is connected to the Marble Dust Threat Group, possibly for data exfoliation, shortly after the attacker directed the malware to collect files and store files as RAR collection.

    Marble Dust is known to target Europe and Middle East, focusing on telecommunications and IT companies, as well as government institutions and organizations opposing the Turkish government.

    To break the network of infrastructure providers, they are scanning for weaknesses in internet-facing devices. They are also exploiting their reach to the DNS registries of government organizations to change the DNS server configuration, which allows them to intercept traffic and steal credensible in man-in-media attacks.

    “This new attack indicates a remarkable change in the ability of marble dust while maintaining stability in its overall approach,” Microsoft said. “The successful use of a zero-day exploitation suggests an increase in technical sophistication and may also suggest that the target priorities of marble dust have increased or their operational goals have become more important.”

    Last year, Marble Dust was also associated with several espionage operations targeting organizations in the Netherlands, mainly targeting Kurdish websites between telecom companies, Internet service providers (ISPs) and 2021 and 2023.


    Red Report 2025

    Based on the analysis of 14M malicious tasks, search for the top 10 MITERAT & CK techniques behind the 93% attacks and how to defend them against them.

    attacks defects espionage exploited Messenger Output zeroday
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleAIRPods with small AI cameras extended to come in 2027, but it raises a question that in which model they will be in
    Next Article How to use chatgate freely without leaving your privacy – with a simple trick
    PineapplesUpdate
    • Website

    Related Posts

    Security

    Remove project directors presented as malicious NPM package utilities

    June 8, 2025
    Security

    Supply series attacks Glustac NPM package with 960K weekly download

    June 7, 2025
    Security

    Exploitation of Critical Round Cube webmail as hacker taking intly

    June 7, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025594 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025536 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025465 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Meta delay entrusts ‘Bhamoth’ AI model, Openi and Google more than one more head start

    May 16, 20250 Views

    The OURA ring found a new rival with just one titanium design and 24/7 biometric tracking – no membership is required

    May 16, 20250 Views

    Filecoin, Lockheed Martin Test IPFS in space

    May 16, 20250 Views
    Our Picks

    What is MicroSD Express? Everything You Need To Know

    June 8, 2025

    5 to avoid pressure washing mistakes

    June 8, 2025

    Spain vs Portugal Live Stream: How to see the Rashtra League Final 2025 from anywhere and for free

    June 8, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.