Tag: malware

A security researcher has released a proof of concept for ShieldBreak, a new Microsoft Defender zero day that reportedly bypasses the RoguePlanet patch and enables SYSTEM level privilege escalation.
NDS Technologies hosted the H3C Edge Event, demonstrating H3C Unified Infrastructure System and highlighting the role of edge computing and networking solutions for modern enterprises.

Dysphoria IoT Botnet Uses Blockchain Name Services To Strengthen Command And Control

Researchers report that the Dysphoria IoT botnet has adopted blockchain based name services and infected device relays after law enforcement disrupted JackSkid infrastructure, making the botnet more resilient.

Recorded Future Reveals New Malware Families Linked To Golden Chickens Operations

Recorded Future has identified four new malware families linked to the Golden Chickens malware as a service ecosystem, highlighting a shift toward modular malware and advanced cybercrime operations.

Cisco Talos Reveals msaRAT Browser Based Command And Control Technique

Cisco Talos has uncovered msaRAT, a Rust based malware used by Chaos ransomware that leverages headless Chrome and Edge browsers with WebRTC to conceal command and control communications.

Trojanized Newtonsoft Json Package Targets Digitain Gaming Platform

Researchers discovered a trojanized NuGet package posing as Newtonsoft.Json that secretly targeted Digitain gaming systems while functioning as a legitimate library for other users.

Thousands Of Malicious GitHub Repositories Distribute SmartLoader Malware Through AI Lures

Researchers have uncovered the FakeGit campaign using nearly 7,600 malicious GitHub repositories, including AI skills and MCP servers, to distribute SmartLoader and StealC malware.

SonicWall SMA Zero Day Vulnerabilities Exploited Before Public Disclosure To Gain Root Access

Volexity has uncovered a threat actor exploiting SonicWall SMA 1000 zero day vulnerabilities before disclosure to gain root access and deploy custom malware on VPN appliances.

UAC-0145 Uses ClickFix CAPTCHA Technique To Deploy Malware On Ukrainian Devices

CERT-UA has linked UAC-0145 to a malware campaign using ClickFix CAPTCHA pages, PowerShell commands, and Android backdoors to target Ukrainian users.

Fake 7 Zip Installers Used By Lurking Lizard To Build Residential Proxy Network Across Compromised Devices

Researchers have uncovered a large scale operation by threat actor Lurking Lizard, which uses fake 7 Zip installers and lookalike websites to turn victim devices into residential proxy nodes.

Weekly Cybersecurity Roundup Highlights Proxy Botnet Takedown, AI Threats, And Rising Malware Campaigns

This week's cybersecurity roundup covers the disruption of the NetNut proxy botnet, AI driven attack techniques, browser based ransomware, phishing campaigns, malware activity, and critical vulnerabilities affecting organizations worldwide.

Fake Indian Tax Utility Used To Spread DcRAT In Targeted Phishing Campaign

Researchers have uncovered Operation DragonReturn, a phishing campaign using fake Indian tax filing utilities to deploy DcRAT and steal sensitive data from taxpayers, finance teams, and tax professionals.

North Korea Linked npm Packages Impersonate Rollup Polyfill Tools To Target Developer Systems And Steal Secrets

Security researchers have uncovered malicious npm packages linked to North Korea that impersonate Rollup polyfill tools to deliver remote access malware and steal developer credentials and sensitive data.

Kaspersky Identifies SEO Poisoning Campaign Using ScreenConnect To Deploy AsyncRAT

Kaspersky has uncovered a large scale SEO poisoning campaign that uses fake software websites and ScreenConnect to deploy AsyncRAT, enabling remote access, data theft, and persistent compromise of Windows systems.

Recent articles

spot_img