Malware & Threats
A threat actor has been creating backdoored open source malware repositories to target novice cybercriminals and game cheaters.
Hi, what are you looking for?
Kaspersky researchers have linked the malware to the BadBox botnet, which has ensnared millions of devices.
A threat actor has been creating backdoored open source malware repositories to target novice cybercriminals and game cheaters.
Researchers have discovered and analyzed a ClickFix attack that uses a fake Cloudflare ‘humanness’ check.
Industrial giant Honeywell has published its 2025 Cybersecurity Threat Report with information on the latest trends.
Microsoft and CrowdStrike are running a project that aims to align threat actor names, and Google and Palo Alto Networks will also contribute.
Cryptocurrency mining operation hits exposed Consul dashboards, Docker Engine APIs and Gitea code-hosting instances to push Monero miner.
Chipmaker says there are indications from Google Threat Analysis Group that a trio of flaws “may be under limited, targeted exploitation.”
Noteworthy stories that might have slipped under the radar: simple PoC code released for Fortinet zero-day, OpenAI O3 disobeys shutdown orders, source code of...
Security researchers flag two phishing campaigns abusing Firebase and Google Apps Script to host malware and fake login pages.
Professional hackers have built a network of ASUS routers that can survive firmware upgrades, factory reboots and most anti-malware scans.
Mandiant warns that a Vietnamese hacking group tracked as UNC6032 is distributing malware via fake AI video generator websites.
Security firm Socket warns flags a campaign targeting NPM users with tens of malicious packages that can hijack system information.
CISA warns companies of a widespread campaign targeting a Commvault vulnerability to hack Azure environments.
A Chinese threat actor exploited a zero-day vulnerability in Trimble Cityworks to hack local government entities in the US.
The DanaBot botnet ensnared over 300,000 devices and caused more than $50 million in damages before being disrupted.
A Chinese espionage group has been chaining two recent Ivanti EPMM vulnerabilities in attacks against organizations in multiple critical sectors.
Russian military intelligence hackers intensify targeting of Western logistics and technology companies moving supplies into Ukraine.
Redmond’s threat hunters found 394,000 Windows systems talking to Lumma controllers, a victim pool that included global manufacturers.
Procolored’s public website served dozens of software downloads containing information stealer malware and a backdoor.
Two ransomware groups and several Chinese APTs have been exploiting two recent SAP NetWeaver vulnerabilities.
Google bundles multiple safeguards under a single Android toggle to protect high-risk users from advanced mobile malware implants.