Tag: malware

AI Generated Browser Ransomware Exploits Chromium File System Access API On Windows And Android

Check Point Research has identified AI generated browser ransomware that uses Chromium File System Access API to encrypt files on Windows and Android without requiring a native payload or browser exploit.

Weekly Cybersecurity Recap Highlights Linux Kernel Flaw, AI Driven Malware, Turla Backdoor, And Infostealer Threats 

This week's cybersecurity roundup covers the DirtyClone Linux kernel vulnerability, AI focused malware techniques, Turla's STOCKSTAY backdoor, major malware disruptions, OpenAI updates, and emerging cyber threats.

Mustang Panda Uses Zoho WorkDrive To Target Indian Government And Hydropower Networks

Acronis has uncovered two cyber espionage campaigns by Mustang Panda targeting Indian government and hydropower organizations using new malware and Zoho WorkDrive as a command and control channel.

Chinese Speaking APT Deploys TinyRCT Backdoor In Southeast Asia Government And Critical Infrastructure Attacks

Palo Alto Networks Unit 42 has uncovered the TinyRCT backdoor used by Chinese speaking threat actor CL STA 1062 to target government organizations and critical infrastructure across Southeast Asia.

Operation Endgame Disrupts Amadey And StealC Malware Network, Recovers 27 Million Stolen Credentials

Operation Endgame has disrupted the Amadey and StealC malware ecosystem, resulting in the takedown of 326 servers, 142 domains, recovery of 27 million stolen credentials, and restriction of more than $47 million in criminal cryptocurrency assets.

ClickFix Campaigns Expand Malware Delivery Through New Loaders And Fake Update Lures

Cybersecurity researchers have identified multiple ClickFix campaigns distributing malware loaders including BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, highlighting evolving attack techniques that leverage social engineering, compromised websites, and fake software updates.

China Linked SprySOCKS Backdoor Expands To Windows With Advanced Driver Based Stealth Features

Cybersecurity researchers uncover new Windows variants of China linked SprySOCKS malware featuring driver based stealth, TCP traffic diversion, and targeting organizations across multiple countries including Pakistan.

Google DoubleClick Abused In Malspam Campaign To Deliver DesckVB RAT

Cybersecurity researchers report a malspam campaign abusing Google DoubleClick redirects to deliver DesckVB RAT via phishing emails, HTML attachments, and multi stage payload delivery.

Compromised GitHub Action Tags Used To Steal CI/CD Credentials In Software Supply Chain Attack

Threat actors compromised popular GitHub Actions workflows to exfiltrate CI/CD credentials through malicious code, raising concerns around software supply chain security and GitHub repository integrity.

Mini Shai Hulud Worm Compromises TanStack, Mistral AI, Guardrails AI And Multiple Open Source Packages In Supply Chain Attack

A Mini Shai Hulud worm linked to TeamPCP has compromised npm and PyPI packages across TanStack, Mistral AI, Guardrails AI and others, deploying credential stealers, CI/CD exploits, and cross ecosystem propagation techniques.

TCLBANKER Banking Trojan Expands Reach Through WhatsApp And Outlook Propagation

Newly identified TCLBANKER banking trojan targets 59 financial platforms using WhatsApp and Outlook worms, highlighting evolving cybercrime tactics.

Silver Fox Targets India And Russia With Phishing Campaign Delivering ABCDoor And ValleyRAT Malware

China linked group Silver Fox targets organizations in India and Russia using phishing emails with tax themed lures to distribute ValleyRAT and newly identified ABCDoor malware, according to Kaspersky analysis.

Recent articles

spot_img