At a glance Actor or group: Jewelbug (suspected China-based threat group) Activity type: Cyber espionage and cryptocurrency...
infosec
At a glance Actor or group: Suspected Chinese-speaking cybercriminals. Activity type: Phishing-as-a-Service (PhaaS). Targets or victims: Shoppers...
At a glance Actor or group: Armored Likho (also known as Eagle Werewolf) Activity type: Cyber espionage...
At a glance Malware family: Abyssos Threat actor: Unknown Target or victims: Windows endpoints Delivery vector: Under...
At a glance Malware family: Kimwolf (also tracked as AISURU) Threat actor: Unknown (Operators manage both Linux...
At a glance Malware family: Project CAV3RN Threat actor: Unattributed cyber espionage cluster Target or victims: Targeted...
At a glance Malware family: DeadLock Threat actor: Multiple criminal affiliates, including Lynx and INC associates Target...
While enterprises are busily integrating artificial intelligence into their workflows to elevate productivity, malicious actors are far...
At a glance Actor: Suspected unknown threat cluster (tracked by Seqrite Lab) Activity Type: Spear-phishing, credential theft,...
The popular JavaScript HTTP client library Axios recently released critical fixes to patch major security flaws. Specifically,...
Threat intelligence experts have uncovered a massive browser-manipulation campaign active across the global digital landscape. Specifically, researchers...
The Satori Threat Intelligence and Research Team at HUMAN has successfully disrupted a massive ad fraud and...
Microsoft’s Digital Crimes Unit (DCU) has delivered a massive blow to the cybercrime underground. In May 2026,...
A sophisticated, highly focused banking trojan is actively undermining the security controls of financial institutions across South...
The TYPO3 project has announced a critical security vulnerability affecting a popular third-party extension. The advisory, tagged...
The FreeBSD Project has issued a sweeping set of seven security advisories resolving highly critical vulnerabilities nested...
Security researchers at Socket have uncovered a coordinated attack targeting PHP Composer packages by hiding malicious JavaScript...
A newly analyzed ransomware campaign is turning traditional endpoint defense playbooks upside down by executing its entire...
A sweeping forensic threat intelligence report has exposed the inner workings of a sophisticated, highly commercialized cybercriminal...
Bypassing Terminal Protections: New SHub “Reaper” Variant Abuses AppleScript to Loot macOS Endpoints
Bypassing Terminal Protections: New SHub “Reaper” Variant Abuses AppleScript to Loot macOS Endpoints
Information stealers targeting macOS have continued to proliferate over the last two years, with threat actors iterating...
A sophisticated new threat actor is forcing corporate security leaders to re-evaluate their entire relationship with cloud...
A critical vulnerability in the LiteSpeed User-End cPanel Plugin is currently being actively exploited in the wild,...