Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Category: Threat Research

Threat Research

in2al5d p3in4er is Almost Completely Undetectable

April 13, 2023October 14, 2025 Securonix

The in2al5d p3in4er loader is a highly evasive component that powers Aurora’s delivery chain. Morphisec explains its anti-VM checks, runtime payload decryption, process hollowing, and decoy-website/social-engineering techniques that rely on YouTube distributio…

Read More
Threat Research

Exposed Web Panel Reveals Gamaredon Group’s Automated Spear Phishing Campaigns

April 12, 2023October 17, 2025 Securonix

EclecticIQ analysts found a publicly exposed SMTP web panel used by Gamaredon to automate spear-phishing campaigns targeting Ukrainian government entities, delivering malicious Word documents via RAR attachments and spoofed sender addresses. The operation show…

Read More
Threat Research

An Analysis of the BabLock Ransomware

April 12, 2023October 15, 2025 Securonix

BabLock (aka Rorschach) is a stealthy, fast-moving ransomware with a multi-component attack chain that blends elements from LockBit but appears to be from a different actor. The analysis details its extension variation scheme, loading chain, and anti-analysis …

Read More
Threat Research

Deja Vu All Over Again: Tax Scammers at Large | FortiGuard Labs

April 12, 2023October 16, 2025 Securonix

Fortinet FortiGuard Labs details a tax-season campaign delivering the XWorm RAT via malicious tax documents, LNK files, and HTA/Powershell chains. The article describes the infection flow, defense-evasion tricks, multiple variants, and indicators to help defen…

Read More
Threat Research

Technical Analysis of Trigona Ransomware

April 12, 2023October 13, 2025 Securonix

Trigona is a Delphi-based ransomware that encrypts files using RSA and AES with a novel residual block termination, adds a multi-step decryption workflow, and recently gained a data wiper capability. ThreatLabz notes overlap in tactics with BlackCat/ALPHV, but…

Read More
Threat Research

Zaraza Bot Credential Stealer Targets Browser Passwords – Uptycs

April 12, 2023October 17, 2025 Securonix

Uptycs researchers identified Zaraza bot, a credential-stealing malware that uses Telegram as its command-and-control channel to collect browser credentials and other sensitive data. It targets 38 web browsers and transmits stolen information to a Telegram ser…

Read More
Threat Research

Ex-Conti and FIN7 Actors Collaborate with New Backdoor

April 12, 2023October 15, 2025 Securonix

Two former Conti and FIN7 affiliates are linked to a new backdoor family named Minodo, delivered alongside Dave Loader and other ITG14/ITG23-aligned tooling, with Nemesis infostealer as a key payload. The campaign chain shows cross-group collaboration, overlap…

Read More
Threat Research

Money Ransomware: The Latest Double Extortion Group – Yoroi

April 11, 2023October 16, 2025 Securonix

Money Ransomware uses a double extortion model, encrypting data and exfiltrating sensitive information to threaten public release if the ransom isn’t paid. The article analyzes the Money Ransomware sample, detailing its configuration, infection flow, and netwo…

Read More
Threat Research

Tax firms targeted by precision malware attacks

April 11, 2023October 17, 2025 Securonix

Tax accounting firms and CPAs are being targeted during peak tax season with a precision malware attack delivering GuLoader via social engineering and a novel Windows-based exploit. The operation starts with a deceptive email, followed by a password‑protected …

Read More
Threat Research

Threat actors strive to cause Tax Day headaches | Microsoft Security Blog

April 11, 2023October 14, 2025 Securonix

Threat actors targeted tax preparation and financial services firms with a Tax Day-themed phishing campaign delivering the Remcos remote access trojan (RAT), culminating in network access and lateral movement. The attackers use a chain that hides the lure behi…

Read More
Threat Research

Read The Manual Locker: A Private RaaS Provider

April 11, 2023October 16, 2025 Securonix

RTM Locker operates as a ransomware-as-a-service with affiliates under strict governance, aiming to stay under the radar and monetize rather than seek headlines. The article provides a technical deep dive into their Windows ransomware, including panel operatio…

Read More
Threat Research

Legion: an AWS Credential Harvester and SMTP Hijacker

April 11, 2023October 16, 2025 Securonix

Legion is a Python-based credential harvester and hacktool sold via Telegram, designed to abuse various services by extracting credentials and hijacking cloud resources for email and SMS abuse. It exhibits capabilities to perform web server exploitation, crede…

Read More
Threat Research

ASEC Weekly Malware Statistics (April 3rd, 2023 – April 9th, 2023) – ASEC BLOG

April 10, 2023October 15, 2025 Securonix

ASEC’s RAPIT weekly analysis (Apr 3–9, 2023) shows backdoors as the dominant category (61.1%), followed by infostealers (20.8%), downloaders (16.9%), and ransomware (1.1%). RedLine leads the threat list with over half of detections, with AgentTesla, GuLoader, …

Read More
Threat Research

Bitter Group Distributes CHM Malware to Chinese Organizations – ASEC BLOG

April 10, 2023October 17, 2025 Securonix

The Bitter (T-APT-17) group has been distributing CHM-based malware to Chinese organizations via email attachments, continuing its pattern of targeting government-related entities using Microsoft Office workflows. The CHM payloads employ obfuscation to evade d…

Read More
Threat Research

Transparent Tribe (APT36) | Pakistan-Aligned Threat Actor Expands Interest in Indian Education Sector

April 10, 2023October 14, 2025 Securonix

SentinelLabs tracks a cluster of malicious Office documents that stage Crimson RAT, distributed by APT36 (Transparent Tribe), targeting the education sector in the Indian subcontinent. The researchers note ongoing evolution in Crimson RAT implementations and t…

Read More

Posts pagination

Previous 1 … 415 416 417 … 490 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.