Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites ...
UTA0560 exploited a Chrome-Windows zero-day chain against NGOs to deploy GRIMWEDGE; APT31 used the same chain to install LONGTALE.
Report URI CSP alerts surfaced a ClickFix campaign on compromised e-commerce sites using Base64 loaders and a fake verification overlay.
Tech Times on MSN
North Korea Trojanized HAProxy in South Korea, Turning SSL Termination Into Wiretap
HAProxy backdoor attributed to North Korea ran undetected inside two South Korean organizations for nine to ten months, using the load balancer's own SSL termination role to read all decrypted HTTPS ...
Russia GRU espionage campaign targeting NATO defense and diplomatic networks in Romania, Spain, and Turkey deployed the HOOKEDGE backdoor via Microsoft Edge, routing spy traffic through a legitimate ...
Threat actors are actively abusing the legitimate Windows utility mshta.exe to execute malicious HTML Application (HTA) files ...
Nonprofit research organization Transluce published a report on September 23 analyzing 37,649 public records from the URL ...
Discover how a covert WordPress malware exploits the Essential plugin and hides Ethereum Ether to maintain undetected ...
The campaign allegedly involved an OpenAI agent swarm and abused package documentation systems, metadata fields, and registry ...
A Casbaneiro banking Trojan campaign targeting users in Latin America is using geofenced phishing staged malware delivery and separate command-and-control ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results