A new cyberespionage campaign attributed to the notorious APT group Stealth Falcon has been uncovered by Check...
malware
In its latest Advanced Persistent Threat (APT) campaign, Kimsuky, a North Korea-linked group, has returned with an...
APT41—also known as BARIUM, Wicked Panda, and Brass Typhoon—is a well-known Chinese state-sponsored APT group notorious for...
Socket’s Threat Research Team has uncovered ‘imad213’, a credential-harvesting tool masquerading as an Instagram booster. Behind its...
In a detailed expose released by ESET, researchers unveiled a sophisticated and persistent cyberespionage campaign by an...
A new info-stealer malware named SoraAI.lnk is leveraging the popularity of OpenAI’s video model, Sora, to infect...
CYFIRMA’s Threat Intelligence Team has published an in-depth analysis of DuplexSpy RAT, a powerful and modular remote...
The Socket Threat Research Team has disclosed two dangerous npm packages that masquerade as helpful developer tools—but...
FortiGuard Labs has uncovered a renewed phishing campaign that leverages the eight-year-old CVE-2017-0199 vulnerability to deploy FormBook,...
Kaspersky researchers have uncovered a fresh wave of attacks exploiting CVE-2024-3721 to deploy a revamped variant of...
A new report from Proofpoint Threat Research, in collaboration with Threatray, reveals mounting evidence that TA397 (also...
Browser security firm LayerX has identified a covert network of malicious Chrome extensions acting as “sleeper agents”—seemingly...
The AhnLab Security Intelligence Center (ASEC) has issued a fresh warning about the resurgence of ViperSoftX, a...
Researchers at CloudSEK have uncovered a new variant of the Atomic macOS Stealer (AMOS) targeting macOS users...
In a recent deep dive, Sophos X-Ops uncovered a sophisticated campaign that’s not targeting enterprises or governments,...
Security researchers at DomainTools have uncovered a highly deceptive malware campaign designed to exploit user trust and...
In early May 2025, IBM X-Force researchers observed an active phishing campaign targeting Colombian users with fake...
K7 Labs has unveiled a detailed analysis of a new PowerShell-based malware campaign that builds on 2024’s...
According to a recent announcement published on Mozilla’s blog, the foundation has introduced a new security feature...
The cybercriminal underworld has a new weapon in its arsenal: Crocodilus, an Android banking trojan that’s rapidly...
Socket’s Threat Research Team has uncovered a targeted supply chain attack leveraging malicious RubyGems impersonating Fastlane plugins....
The Sysdig Threat Research Team (TRT) has uncovered a malicious campaign exploiting a misconfigured Open WebUI instance—an...