In a newly uncovered software supply chain attack, threat actors have successfully deployed a backdoored version of...
malware
Imperva researchers have uncovered a supply chain attack masquerading as a popular Python utility. The package in...
A deceptive and highly targeted phishing campaign has successfully compromised several popular npm packages, including eslint-config-prettier, eslint-plugin-prettier,...
In response to the escalating wave of cybersecurity threats, Google has filed a lawsuit against the operators...
A new investigation by the FortiCNAPP team, part of FortiGuard Labs, has revealed a disturbing evolution in...
Trellix’s threat intelligence team has uncovered a stealthy malware campaign aimed squarely at financial services institutions in...
Researchers at Cyfirma have uncovered a disturbing example of how a so-called “educational” tool can cross the...
A new wave of phishing attacks has been observed sweeping across Russia’s healthcare and IT sectors, attributed...
A fraudulent extension for the Cursor AI IDE—an editor built upon Microsoft’s open-source Visual Studio Code—was used...
A new chapter in the ongoing Contagious Interview campaign has emerged, as the Socket Threat Research Team...
Interlock RAT Gets PHP Makeover: New Variant Uses Steganography & ClickFix for Stealthy Infiltration
Interlock RAT Gets PHP Makeover: New Variant Uses Steganography & ClickFix for Stealthy Infiltration
Researchers from The DFIR Report, in collaboration with Proofpoint, have uncovered a stealthy and resilient variant of...
CYFIRMA has uncovered a new threat model called RenderShock — a zero-click attack strategy that turns convenience...
In late 2024, security researchers from Unit 42 uncovered a sophisticated new variant of the malware associated...
In a concerning development for WordPress site administrators, the Patchstack team has uncovered a targeted supply chain...
In a revelation from Darktrace, researchers have uncovered a highly coordinated and ongoing cybercrime campaign that uses...
Cybercriminals are once again exploiting the trust users place in popular platforms like GitHub to spread sophisticated...
A newly uncovered variant of the notorious macOS.ZuRu malware is now using a trojanized version of Termius,...
In a newly uncovered campaign, the DoNot APT group—also tracked as APT-C-35, Mint Tempest, Origami Elephant, and...
In a disturbing evolution of macOS malware, Moonlock Lab has discovered that Atomic macOS Stealer (AMOS)—already notorious...
Researchers at ReversingLabs (RL) have uncovered a supply chain compromise of the popular ETHcode extension for Visual...
The Anatsa Android banking trojan, one of the most advanced mobile malware threats active today, is back...
Recently, security researchers at the Cybereason Global Security Operations Center (GSOC) discovered a highly deceptive malware campaign...