Open-source software repositories remain a top target for modern cybercriminals. Recently, Socket’s Threat Research Team uncovered a...
Malware
A sophisticated, highly focused banking trojan is actively undermining the security controls of financial institutions across South...
Security researchers have discovered a stealthy cloud threat hiding inside enterprise cloud environments. Specifically, FortiGuard Labs recently...
A dangerous new ValleyRAT malware campaign is currently targeting unsuspecting corporate users across the internet. Specifically, threat...
Security researchers at Socket have uncovered a coordinated attack targeting PHP Composer packages by hiding malicious JavaScript...
A major software supply-chain storm is brewing in the PHP ecosystem. Security firm Socket has exposed a...
A newly analyzed ransomware campaign is turning traditional endpoint defense playbooks upside down by executing its entire...
A sweeping forensic threat intelligence report has exposed the inner workings of a sophisticated, highly commercialized cybercriminal...
Bypassing Terminal Protections: New SHub “Reaper” Variant Abuses AppleScript to Loot macOS Endpoints
Bypassing Terminal Protections: New SHub “Reaper” Variant Abuses AppleScript to Loot macOS Endpoints
Information stealers targeting macOS have continued to proliferate over the last two years, with threat actors iterating...
In the annals of cyber warfare, Stuxnet has long been considered the premier example of malware specifically...
The use of steganographyβthe ancient art of hiding secret messages inside seemingly ordinary filesβis experiencing a massive...
Information stealers are no longer just basic, entry-level scripts designed to lift saved passwords from standard browser...
A massive, fast-moving software supply chain attack has struck the global JavaScript development ecosystem. Over the past...
The Russian state-sponsored cyber-espionage threat group widely known as Secret Blizzard is fundamentally rewriting its technical playbook....
A routine investigation into a low-detection installer has blown the doors off a highly organized, financially motivated...
The prolific Korean-speaking threat actor known as Kimsuky is executing a major tactical evolution, incorporating modern programming...
A comprehensive deep dive by the research team at Point Wild has laid bare the internal mechanics...
In July 2022, security researchers dropped the first analysis of OrBit, a sophisticated, then-undocumented Linux userland rootkit....
A relentless cyber-espionage operation has targeted an Azerbaijani oil and gas company, demonstrating that advanced persistent threats...
A massive and highly coordinated supply chain assault is currently ripping through the JavaScript developer ecosystem. Security...