The use of steganography—the ancient art of hiding secret messages inside seemingly ordinary files—is experiencing a massive...
Malware
Information stealers are no longer just basic, entry-level scripts designed to lift saved passwords from standard browser...
A massive, fast-moving software supply chain attack has struck the global JavaScript development ecosystem. Over the past...
The Russian state-sponsored cyber-espionage threat group widely known as Secret Blizzard is fundamentally rewriting its technical playbook....
A routine investigation into a low-detection installer has blown the doors off a highly organized, financially motivated...
The prolific Korean-speaking threat actor known as Kimsuky is executing a major tactical evolution, incorporating modern programming...
A comprehensive deep dive by the research team at Point Wild has laid bare the internal mechanics...
In July 2022, security researchers dropped the first analysis of OrBit, a sophisticated, then-undocumented Linux userland rootkit....
A relentless cyber-espionage operation has targeted an Azerbaijani oil and gas company, demonstrating that advanced persistent threats...
A massive and highly coordinated supply chain assault is currently ripping through the JavaScript developer ecosystem. Security...
The threat collective recognized as TeamPCP, historically notorious for orchestrating supply chain incursions within the NPM ecosystem,...
A brief but dangerous supply chain attack briefly hijacked the official Visual Studio Code marketplace, targeting over...
Security researchers have exposed a highly stealthy attempted intrusion that weaponized an open-source framework into a potent...
A sprawling cybercriminal operation has been intercepted, but not before thousands of machines were quietly infected by...
A new investigation has unmasked a relentless spearphishing campaign by the Russian-aligned threat actor Gamaredon, exposing their...
A new wave of cyber espionage has been unleashed against Russian industrial, financial, and transport sectors, revealing...
The renowned open-source Wii U emulator, Cemu, has promulgated a security bulletin detailing a sophisticated compromise of...
In a sophisticated supply-chain attack, attackers compromised the official JDownloader website between May 6 and May 7,...
Security researchers are sounding the alarm on a highly resourceful new campaign dubbed “GemStuffer.” Uncovered by Socket’s...
Modern Android banking malware is undergoing a quiet, dangerous revolution. Rather than flashing new user-facing tricks, threat...