Collected every two hours from specialised publications — each link leads to the original article.
A Taiwanese government-affiliated research institute that specializes in computing and associated technologies was breached by nation-state threat actors with …
Threat actors with ties to Pakistan have been linked to a long-running malware campaign dubbed Operation Celestial Force since at least 2018.The activity, stil…
The recently uncovered cyber espionage campaign targeting perimeter network devices from several vendors, including Cisco, may have been the work of China-link…
A new ongoing malware campaign has been observed distributing three different stealers, such as CryptBot, LummaC2, and Rhadamanthys hosted on Content Delivery …
The Akira ransomware group has extorted approximately $42 million from over 250 victims since January 1, 2024. The group initially focused on Windows systems b…
Select Ukrainian government networks have remained infected with a malware called OfflRouter since 2015.Cisco Talos said its findings are based on an analysis …
A suspected Vietnamese-origin threat actor has been observed targeting victims in several Asian and Southeast Asian countries with malware designed to harvest …
The cybercrime group called GhostSec has been linked to a Golang variant of a ransomware family called GhostLocker.“TheGhostSec and Stormous ransomware groups …
Mexican users have been targeted with tax-themed phishing lures at least since November 2023 to distribute a previously undocumented Windows malware called Tim…
A decryptor for the Tortilla variant of the Babuk ransomware has been released by Cisco Talos, allowing victims targeted by the malware to regain access to the…
The threat actors behind the8Base ransomwareare leveraging a variant of the Phobos ransomware to conduct their financially motivated attacks.The findings come …
A new cyber attack campaign has been observed using spuriousMSIXWindows app package files for popular software such as Google Chrome, Microsoft Edge, Brave, Gr…
A relatively new threat actor known asYoroTrooperis likely made up of operators originating from Kazakhstan.The assessment, which comes from Cisco Talos, is ba…
The North Korea-linked threat actor known as Lazarus Group has been observed exploiting a now-patched critical security flaw impacting Zoho ManageEngine Servic…
An unknown threat actor is using a variant of the Yashma ransomware to target various entities in English-speaking countries, Bulgaria, China, and Vietnam at l…
Spanish-speaking users in Latin America have been at the receiving end of a new botnet malware dubbedHorabotsince at least November 2020."Horabot enables the t…
A new ransomware group known asRA Grouphas become the latest threat actor to leverage the leaked Babuk ransomware source code to spawn its own locker variant.T…
Cisco has rolled out security updates to address a critical flaw reported in the ClamAV open source antivirus engine that could lead to remote code execution o…
Cisco has rolled out security updates to address a critical flaw reported in the ClamAV open source antivirus engine that could lead to remote code execution o…
A new financially motivated campaign that commenced in December 2022 has seen the unidentified threat actor behind it deploying a novel ransomware strain dubbe…
Microsoft's decision to block Visual Basic for Applications (VBA) macros by default for Office files downloaded from the internet has led many threat actors to…
Phishing campaigns involving theQakbot malwareare using Scalable Vector Graphics (SVG) images embedded in HTML email attachments.The new distribution method wa…
Cybersecurity researchers have reported an increase inTrueBotinfections, primarily targeting Mexico, Brazil, Pakistan, and the U.S.Cisco Talos said the attacke…
The advanced persistent threat (APT) group known as Transparent Tribe has been attributed to a new ongoing phishing campaign targeting students at various educ…