Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Category: Threat Research

Threat Research

“FakeGPT” #2: Open-Source Turned Malicious in Another Variant of the Facebook Account-Stealer…

March 22, 2023October 17, 2025 Guardio-Security

Guardio Labs found a new FakeGPT Chrome extension variant that forks a legitimate open-source “ChatGPT For Google” project to hide malicious code that steals Facebook session cookies. The extension encrypts those cookies with AES and exfiltrates them via a cus…

Read More
Threat Research

Phishing Campaign Targets Chinese Nuclear Energy Industry

March 22, 2023October 16, 2025 Securonix

Intezer traces Bitter APT activity targeting the Chinese nuclear energy sector in an Asia-Pacific espionage campaign, ties it to prior Bitter APT tooling including CHM/Excel payloads and Microsoft Office exploits. The operation uses social engineering with lur…

Read More
Threat Research

Guidance for investigating attacks using CVE-2023-23397 | Microsoft Security Blog

March 22, 2023October 14, 2025 Securonix

Microsoft’s guidance explains how CVE-2023-23397 enables a secret Net-NTLMv2 hash leak via Outlook reminders and outlines Forest Blizzard (STRONTIUM), a Russian state-sponsored group linked to GRU Unit 26165, as an actor exploiting this vulnerability to access…

Read More
Threat Research

Earth Preta’s Cyberespionage Campaign Hits Over 200

March 21, 2023October 15, 2025 Securonix

Earth Preta orchestrates a long-running cyberespionage operation involving multiple APT subgroups (724, 1358, 5171) with a centralized development unit, targeting a range of sectors and regions and expanding to maritime and government entities. The study highl…

Read More
Threat Research

Cinoshi Project And The Dark Side Of Free MaaS – Cyble

March 21, 2023October 15, 2025 Securonix

Cyble Research and Intelligence Labs uncovered a Malware-as-a-Service platform named “Cinoshi” that bundles a stealer, botnet, clipper, and cryptominer, with free stealer and web-panel access. The MaaS includes a web panel for build configuration, botnet task …

Read More
Threat Research

A look at a Magecart skimmer using the Hunter obfuscator

March 21, 2023October 14, 2025 Securonix

Magecart campaigns are exploiting client-side obfuscation to load skimmers during checkout, using Hunter to conceal JavaScript code and inject malicious forms. The techniques culminate in encoded credit card data stored in a cookie and exfiltrated via POST, al…

Read More
Threat Research

DBatLoader: Actively Distributing Malwares Targeting European Businesses

March 20, 2023October 14, 2025 Securonix

ThreatLabz (Zscaler) analyzes a new DBatLoader campaign active in Europe that delivers Remcos RAT and Formbook to manufacturing companies and other businesses. The operation uses WordPress-hosted payloads with authorized SSL certificates, multi-format obfuscat…

Read More
Threat Research

Fork in the Ice: IcedID Malware Analysis | Proofpoint US

March 20, 2023October 15, 2025 Securonix

Proofpoint catalogs three IcedID variants—Standard, Lite, and Forked—and notes a shift from banking-focused activity to payload delivery, including ransomware. It links the Forked variant to Emotet infections and multiple threat actors (TA581, TA578, TA551, TA…

Read More
Threat Research

Session Cookies, Keychains, SSH Keys and More | 7 Kinds of Data Malware Steals from macOS Users

March 20, 2023October 16, 2025 Securonix

MacOS threat actors are increasingly focusing on data theft rather than ransom, exfiltrating session cookies, keychains, SSH keys, and other sensitive data to monetize or enable espionage. The article outlines where these data assets reside, how attackers acce…

Read More
Threat Research

MacStealer: New MacOS-based Stealer Malware Identified

March 20, 2023October 16, 2025 Securonix

MacStealer is a macOS stealer distributed via DMG that is controlled over Telegram, marking a new platform for stealer operations. It exfiltrates browser credentials, Keychain data, and files, sending stolen data via HTTP POST to a C2 and to Telegram channels/…

Read More
Threat Research

Shining Light on Dark Power: Yet Another Ransomware Gang

March 20, 2023October 16, 2025 Securonix

The article analyzes the Dark Power ransomware gang, detailing its Nim-based ransomware, encryption techniques (AES-CTR), and anti-forensic tactics such as service and process termination, log clearing, and extensive file/folder exclusions. It also covers the …

Read More
Threat Research

Credential Caution: The New Cloud File-Borne Phishing Attack – InQuest

March 18, 2023October 15, 2025 Securonix

InQuest Labs analyzed a credential phishing campaign targeting a municipal government, tracing a sequence from a compromised sender to a cloud-hosted phishing infrastructure. The attacker used Raven cloud hosting and Microsoft Azure blob storage to lure victim…

Read More
Threat Research

Warning for Microsoft Office Outlook Privilege Escalation Vulnerability (CVE-2023-23397) – ASEC BLOG

March 18, 2023October 15, 2025 Securonix

Microsoft has disclosed a privileged escalation vulnerability in Outlook for Windows (CVE-2023-23397) used to steal NTLM credentials via a crafted Reminder alert. The issue can be exploited by a malicious email that forces authentication to a threat actor-cont…

Read More
Threat Research

Earth Preta Updated Stealthy Strategies

March 18, 2023October 19, 2025 Securonix

Earth Preta has updated its TTPs across campaigns to bypass security solutions, introducing new tools like TONEINS, TONESHELL, PUBLOAD, and NUPAKAGE. The campaign relies on decoy documents, Google Drive links, and password-protected archives to evade detection…

Read More
Threat Research

Operation Tainted Love | Chinese APTs Target Telcos in New Attacks

March 18, 2023October 14, 2025 Securonix

SentinelLabs and QGroup describe attacks in Q1 2023 against Middle East telecoms, linked to the Operation Soft Cell activity and likely conducted by a Chinese cyberespionage group in the Gallium/APT41 nexus. The operation centers on mim221, a maintained creden…

Read More

Posts pagination

Previous 1 … 420 421 422 … 490 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.