Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Category: Threat Research

Threat Research

Distribution of Malware Disguised as Coin and Investment-related Content – ASEC BLOG

August 3, 2023October 21, 2025 Securonix

ASEC reports the distribution of malware disguised as coin exchange and investment content, delivered as self-extracting executables and Word documents. The operation is attributed to the Kimsuky group, and it uses macros, scripting, and URL-based commands to …

Read More
Threat Research

Cyble – AgentTesla Malware Targets Users With Malicious Control Panel File

August 3, 2023October 14, 2025 Securonix

Cyble Research and Intelligence Labs details a multi-stage AgentTesla infection chain delivered via a malicious CPL file embedded in a tax-themed spam email, which triggers PowerShell scripts and a .NET loader to inject AgentTesla. The campaign uses obfuscated…

Read More
Threat Research

VMConnect: Malicious PyPI packages imitate popular open source modules

August 3, 2023October 22, 2025 Reversinglabs

ReversingLabs discovered a campaign of malicious PyPI packages (including VMConnect) that embed Base64‑encoded payloads in release artifacts to spawn processes, decode and execute secondary commands from a C2 server. The actors also published benign-looking Gi…

Read More
Threat Research

The Season of Back to School Scams | McAfee Blog

August 3, 2023October 13, 2025 McAfee

Authored by: Lakshya Mathur and Yashvi Shah  As the Back-to-School season approaches, scammers are taking advantage of the opportunity to…
The post The Season of Back to School Scams appeared first on McAfee Blog….

Read More
Threat Research

“PhishForce” — Vulnerability Uncovered in Salesforce’s Email Services Exploited for Phishing…

August 2, 2023October 14, 2025 Guardio-Security

Guardio Labs discovered an active campaign that abused a flaw in Salesforce’s Email-to-Case and Organization‑Wide Email flows to verify and send phishing messages from @salesforce.com addresses, directing victims to phishing pages hosted on Facebook’s apps pla…

Read More
Threat Research

Dark Web Profile: Big Head Ransomware – SOCRadar® Cyber Intelligence Inc.

August 2, 2023October 16, 2025 Securonix

Big Head Ransomware is a nascent ransomware family first seen in May 2023, consisting of multiple variants and an elusive actor behind it. It uses deceptive methods such as fake Windows updates and malvertising, communicates with victims via Gmail and Telegram…

Read More
Threat Research

New threat actor targets Bulgaria, China, Vietnam and other countries with customized Yashma ransomware

August 2, 2023October 17, 2025 Securonix

Cisco Talos tracks an ongoing ransomware operation tied to a likely Vietnamese actor, using a customized Yashma variant that mimics WannaCry across multiple regions. The group downloads ransom notes from an actor-controlled GitHub repo via an embedded batch fi…

Read More
Threat Research

BlueCharlie, Previously Tracked as TAG-53, Continues to Deploy New Infrastructure in 2023 | Recorded Future

August 2, 2023October 16, 2025 RecordedFuture

Insikt Group tracks BlueCharlie, a Russia-nexus threat group that’s evolving operations, with 94 new domains since March 2023.

Read More
Threat Research

Ransomware Roundup – DoDo and Proton | FortiGuard Labs

August 1, 2023October 15, 2025 Securonix

FortiGuard Labs’ bi-weekly Ransomware Roundup covers the DoDo and Proton variants, detailing their infection vectors, encryption behavior, and observed indicators, along with Fortinet protections and recommended defenses. The report highlights DoDo as a Chaos …

Read More
Threat Research

SpyNote continues to attack financial institutions | Cleafy Labs

July 31, 2023October 14, 2025 admin

Cleafy Labs reports that SpyNote spyware has been repurposed to perform aggressive banking fraud campaigns across Europe by abusing Android Accessibility services, media projection APIs, and built-in remote access workflows. The malware collects keystrokes, SM…

Read More
Threat Research

Remcos | Malware Trends Tracker

July 31, 2023October 18, 2025 Securonix

Remcos is a remotely accessible trojan for Windows that has been actively developed and sold since 2016, enabling attackers to build botnets and steal data. The article outlines its distribution via phishing emails with macros, frequent updates from the vendor…

Read More
Threat Research

From small LNK to large malicious BAT file with zero VT score

July 31, 2023October 15, 2025 Securonix

An e-mail-based malspam campaign delivered a small LNK dropper that pretends to be a Purchase Order PDF. The LNK ultimately downloads a PDF lure, a BAT file, and two obfuscated .NET binaries that are loaded reflectively in memory, with low VirusTotal detection…

Read More
Threat Research

Kaspersky crimeware report: Emotet, DarkGate and LokiBot

July 31, 2023October 14, 2025 Securonix

Three crimeware families—DarkGate, LokiBot, and Emotet—are described with their infection chains and capabilities, including a four-stage DarkGate loader, a LokiBot phishing campaign, and an Emotet resurgence via OneNote attachments. The report highlights memo…

Read More
Threat Research

Threat Profile: Rhysida Ransomware – SOCRadar® Cyber Intelligence Inc.

July 31, 2023October 13, 2025 Securonix

Rhysida Ransomware Group emerged in May 2023 as a RaaS operation, targeting sectors such as education and manufacturing with double-extortion and public data leakage. The attackers use phishing and Cobalt Strike, encrypt data with RSA-4096 and ChaCha20, and ma…

Read More
Threat Research

Botnet Fenix: New botnet going after tax payers in Mexico and Chile – Metabase Q

July 31, 2023October 14, 2025 Securonix

Metabase Q uncovered a LATAM-focused botnet named Fenix that targets taxpayers in Mexico and Chile through fake tax portals to steal credentials. The operation features a multi-stage infection chain, including phishing websites, a JS/JSE downloader, PowerShell…

Read More

Posts pagination

Previous 1 … 391 392 393 … 491 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.