In a sweeping campaign that blends social engineering with software subversion, a newly identified threat actor dubbed...
Malware
A sudden and coordinated wave of exploit attempts targeting a critical vulnerability in Zyxel firewalls has been...
Trend Micro has uncovered an active and sophisticated campaign exploiting a critical remote code execution (RCE) vulnerability...
Despite mounting international pressure, public exposures, and a barrage of sanctions, the Predator spyware continues to evolve...
A new Ransomware-as-a-Service (RaaS) threat has emerged in 2025 — and it’s not just encrypting your data....
In 2025, cybersecurity analysts witnessed the emergence of a sophisticated and highly evasive info-stealer known as Katz...
Recently, eSentire’s Threat Response Unit (TRU) uncovered an alarming surge in campaigns leveraging a malware duo: HijackLoader...
In a newly published report, K7 Labs has uncovered a potent ransomware variant known as Spectra Ransomware,...
In May 2025, a financial institution in Asia was targeted in a highly anomalous ransomware attack that...
CyberEye, also known as TelegramRAT, has emerged as a powerful and modular .NET-based remote access trojan (RAT)...
DanaBot—an infamous Malware-as-a-Service (MaaS) operation—unwittingly sabotaged itself with a memory leak flaw eerily reminiscent of the infamous...
Seqrite Labs APT-Team has uncovered a targeted campaign against China Mobile Tietong Co., Ltd., a prominent subsidiary...
Socket’s Threat Research Team has uncovered ‘imad213’, a credential-harvesting tool masquerading as an Instagram booster. Behind its...
In a detailed expose released by ESET, researchers unveiled a sophisticated and persistent cyberespionage campaign by an...
A new info-stealer malware named SoraAI.lnk is leveraging the popularity of OpenAI’s video model, Sora, to infect...
Akamai’s Security Intelligence and Response Team (SIRT) has uncovered active exploitation of CVE-2025-24016, a critical remote code...
Unit 42, the threat intelligence arm of Palo Alto Networks, has uncovered a malware campaign involving Blitz,...
CYFIRMA’s Threat Intelligence Team has published an in-depth analysis of DuplexSpy RAT, a powerful and modular remote...
The Socket Threat Research Team has disclosed two dangerous npm packages that masquerade as helpful developer tools—but...
FortiGuard Labs has uncovered a renewed phishing campaign that leverages the eight-year-old CVE-2017-0199 vulnerability to deploy FormBook,...
Positive Technologies has uncovered an ongoing, multi-stage cybercrime campaign—dubbed “EnigmaCyberSecurity”—primarily targeting Brazilian users and financial institutions. The...