Seqrite Labs APT-Team has uncovered a targeted campaign against China Mobile Tietong Co., Ltd., a prominent subsidiary...
Malware
Socket’s Threat Research Team has uncovered ‘imad213’, a credential-harvesting tool masquerading as an Instagram booster. Behind its...
In a detailed expose released by ESET, researchers unveiled a sophisticated and persistent cyberespionage campaign by an...
A new info-stealer malware named SoraAI.lnk is leveraging the popularity of OpenAI’s video model, Sora, to infect...
Akamai’s Security Intelligence and Response Team (SIRT) has uncovered active exploitation of CVE-2025-24016, a critical remote code...
Unit 42, the threat intelligence arm of Palo Alto Networks, has uncovered a malware campaign involving Blitz,...
CYFIRMA’s Threat Intelligence Team has published an in-depth analysis of DuplexSpy RAT, a powerful and modular remote...
The Socket Threat Research Team has disclosed two dangerous npm packages that masquerade as helpful developer tools—but...
FortiGuard Labs has uncovered a renewed phishing campaign that leverages the eight-year-old CVE-2017-0199 vulnerability to deploy FormBook,...
Positive Technologies has uncovered an ongoing, multi-stage cybercrime campaign—dubbed “EnigmaCyberSecurity”—primarily targeting Brazilian users and financial institutions. The...
Kaspersky researchers have uncovered a fresh wave of attacks exploiting CVE-2024-3721 to deploy a revamped variant of...
Security researchers at K7 Computing have uncovered a malicious Android campaign that leverages the name of a...
Browser security firm LayerX has identified a covert network of malicious Chrome extensions acting as “sleeper agents”—seemingly...
According to Cofense Intelligence, a sophisticated and evolving phishing campaign is using spoofed Booking.com emails and fake...
The AhnLab Security Intelligence Center (ASEC) has issued a fresh warning about the resurgence of ViperSoftX, a...
Researchers at CloudSEK have uncovered a new variant of the Atomic macOS Stealer (AMOS) targeting macOS users...
Security researchers at DomainTools have uncovered a highly deceptive malware campaign designed to exploit user trust and...
K7 Labs has unveiled a detailed analysis of a new PowerShell-based malware campaign that builds on 2024’s...
The cybercriminal underworld has a new weapon in its arsenal: Crocodilus, an Android banking trojan that’s rapidly...
Socket’s Threat Research Team has uncovered a targeted supply chain attack leveraging malicious RubyGems impersonating Fastlane plugins....
The Sysdig Threat Research Team (TRT) has uncovered a malicious campaign exploiting a misconfigured Open WebUI instance—an...
The Wordfence Threat Intelligence team has uncovered a deceptive and highly persistent WordPress malware variant that disguises...