A threat group linked to Iran’s Ministry of Intelligence and Security (MOIS) has been identified using … Iranian Hackers Deploy New Cavern Malware Framework to Target Israeli OrganizationsRead more
Undocumented Backdoor in Tenda Router Firmware Allows Attackers to Gain Full Admin Access
A newly disclosed security vulnerability has revealed that several firmware versions for Tenda networking devices contain … Undocumented Backdoor in Tenda Router Firmware Allows Attackers to Gain Full Admin AccessRead more
China-Linked Hackers Exploit Critical Roundcube Flaws to Target US and Canadian Universities
A newly discovered cyber espionage campaign has revealed that a suspected China-aligned threat group is targeting … China-Linked Hackers Exploit Critical Roundcube Flaws to Target US and Canadian UniversitiesRead more
Pegasus Spyware Targeted EU Lawmaker Investigating Surveillance Abuse
A new investigation has revealed that former Member of the European Parliament (MEP) Stelios Kouloglou was … Pegasus Spyware Targeted EU Lawmaker Investigating Surveillance AbuseRead more
Armored Likho Deploys BusySnake Stealer in Advanced Cyber Espionage Campaigns
A previously undocumented threat actor known as Armored Likho has been linked to a series of … Armored Likho Deploys BusySnake Stealer in Advanced Cyber Espionage CampaignsRead more
New Avalon Malware Uses Multi-Stage Phishing to Deploy CrownX Ransomware
Cybersecurity researchers have uncovered a previously unknown modular malware framework called Avalon, a sophisticated threat that … New Avalon Malware Uses Multi-Stage Phishing to Deploy CrownX RansomwareRead more
New RustDuck Malware Hijacks Routers, IP Cameras, and Servers to Launch DDoS Attacks
Cybersecurity researchers have uncovered a new malware family called RustDuck that is actively compromising home routers, … New RustDuck Malware Hijacks Routers, IP Cameras, and Servers to Launch DDoS AttacksRead more
Hackers Bypass Microsoft Conditional Access in Massive Azure CLI Password Spray Attack
Cybersecurity researchers have uncovered a large-scale automated password spray campaign targeting Microsoft Azure Command-Line Interface (Azure … Hackers Bypass Microsoft Conditional Access in Massive Azure CLI Password Spray AttackRead more
FortiBleed Campaign Linked to INC and Lynx Ransomware Attacks
The large-scale FortiBleed credential theft campaign has now been directly linked to the INC and Lynx … FortiBleed Campaign Linked to INC and Lynx Ransomware AttacksRead more
ToddyCat Deploys Umbrij Malware to Hijack Gmail Accounts via Google OAuth API
The advanced persistent threat (APT) group ToddyCat has been linked to a newly discovered malware called … ToddyCat Deploys Umbrij Malware to Hijack Gmail Accounts via Google OAuth APIRead more
