Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Category: Threat Research

Threat Research

Compromised Microsoft Dynamic 365 Customer Voice | Cofense

August 18, 2022October 14, 2025 Securonix

Threat actors abuse a compromised Microsoft Dynamics 365 Customer Voice account to send spoofed eFax notifications and lure recipients into credential phishing. The campaign spreads broadly across sectors by leveraging a legitimate service to host a fake eFax/…

Read More
Threat Research

Making victims pay, infostealer malwares mimick pirated-software download sites

August 17, 2022October 17, 2025 Securonix

Threat actors distributing infostealers are gaining momentum by targeting victims seeking to illegally download pirated software. The analysis covers two infection chains—Case 1 with RedLine Stealer and Case 2 with RecordBreaker Stealer—highlighting evasion te…

Read More
Threat Research

The Anatomy of Wiper Malware, Part 2: Third-Party Drivers | CrowdStrike

August 17, 2022October 15, 2025 Securonix

Part 2 of the wiper series explains how threat actors exploit legitimate third-party kernel drivers to bypass detection and perform disk wiping in kernel space, focusing on ElRawDisk and EPMNTDRV. It also covers how these drivers are loaded (via Service Contro…

Read More
Threat Research

Threat Actors Exploiting Multiple CVEs Against Zimbra Collaboration Suite | CISA

August 17, 2022October 17, 2025 Securonix

Two sentences summarizing: U.S. CISA and MS-ISAC warn that multiple CVEs in Zimbra Collaboration Suite are being actively exploited in government and private networks, with attackers able to gain access and maintain persistence. The advisory provides patch gui…

Read More
Threat Research

BitRAT and XMRig CoinMiner Being Distributed via Windows License Verification Tool – ASEC BLOG

August 16, 2022October 20, 2025 Securonix

ASEC’s analysis shows BitRAT and XMRig CoinMiner being distributed as a Windows license verification tool, with the payloads deployed via a MediaFire-hosted 7z SFX bundle and downloader chains that depend on the victim’s environment. The campaign uses Defender…

Read More
Threat Research

AsyncRAT Being Distributed in Fileless Form – ASEC BLOG

August 16, 2022October 15, 2025 Securonix

AsyncRAT is being distributed in a fileless form via phishing emails, where a compressed attachment leads to an HTML file that generates a malicious ISO containing VBScript and BAT components. The infection chain culminates in a PowerShell-based loader that in…

Read More
Threat Research

Analyzing Attack Data and Trends Targeting Ukrainian Domains

August 16, 2022October 21, 2025 Securonix

Attack activity targeting Ukrainian .ua domains has risen, with a wide range of attack types observed and a shift toward broad automated exploit attempts. The findings detail top vectors such as malicious IPs, malicious user-agents, and attempts to upload or d…

Read More
Threat Research

Cyble – Dissecting IBAN Clipper

August 15, 2022October 16, 2025 Securonix

Two sentences: Cyble Research Labs dissected an IBAN Clipper malware that targets Windows by monitoring the clipboard and swapping bank account numbers with the attacker’s data. The malware uses remote fetching of IBANs, multithreading for speed, and persisten…

Read More
Threat Research

Brazil malspam pushes Astaroth (Guildma) malware

August 15, 2022October 23, 2025 Securonix

Today’s diary describes a Brazilian malspam campaign delivering Astaroth (Guildma) malware via a Boleto-themed email pretending to be from Grupo Solução & CIA. The malicious ZIP contains a Windows shortcut and a batch file used to infect a Windows host and exf…

Read More
Threat Research

XCSSET Malware Update | macOS Threat Actors Prepare for Life Without Python

August 15, 2022October 16, 2025 Securonix

XCSSET, a macOS malware family, updated in 2022 to adapt to macOS Monterey and to prepare for a future without Python by removing Python-based components and shifting toward SHC-compiled droppers and run-only AppleScripts. The analysis outlines infection refin…

Read More
Threat Research

A Tale of PivNoxy and Chinoxy Puppeteer | FortiGuard Labs 

August 12, 2022October 17, 2025 Securonix

Fortinet FortiGuard Labs analyzes a spearphishing campaign against a South Asian telecommunications agency, weaponizing an RTF document with Royal Road to exploit CVE-2018-0798 and drop a DLL chain leading to PoisonIvy (PivNoxy/Chinoxy) backdoors. The report o…

Read More
Threat Research

Cyble – BianLian: New Ransomware Variant On The Rise

August 12, 2022October 13, 2025 Securonix

Cyble Research Labs highlights BianLian as a Go language-based ransomware variant that targets multiple industries and leverages cross-platform capabilities to complicate reverse engineering. The campaign includes file encryption across drives, ransom notes, a…

Read More
Threat Research

Grandoreiro Banking Trojan with New TTPs Targeting Various Industry Verticals

August 11, 2022October 14, 2025 Securonix

ThreatLabz observed a Grandoreiro banking Trojan campaign targeting Mexico and Spain across multiple industry verticals, using spear-phishing emails that impersonate government officials to lure victims to download and execute Grandoreiro. The loader employs a…

Read More
Threat Research

Cyble – EvilCoder Project Selling Multiple Dangerous Tools Online

August 11, 2022October 13, 2025 Securonix

Cyble researchers exposed a dark web post by a malware developer selling a powerful Windows RAT suite, including XWorm with ransomware and HVNC capabilities. The article details the toolset, persistence and anti-analysis techniques, data exfiltration, and the …

Read More
Threat Research

TA558 Threat Actor Targets Hospitality & Travel | Proofpoint US

August 11, 2022October 14, 2025 Securonix

TA558 is a financially motivated threat actor targeting hospitality, hotel, and travel organizations, predominantly in Latin America, with activity in Western Europe and North America. From 2018 onward, Proofpoint observed TA558 repeatedly using reservation-th…

Read More

Posts pagination

Previous 1 … 461 462 463 … 489 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.