Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: DARK WEB

Threat Research

Unmasking Meduza Stealer Malware: Comprehensive Analysis & Countermeasures

June 24, 2023October 16, 2025 Securonix

Meduza Stealer is a Windows-targeted data thief designed to exfiltrate browser data, wallet extensions, and other sensitive artifacts while using country exclusions and a server check to stay stealthy. Uptycs analyzes its marketing, distribution, workflow, and…

Read More
Threat Research

‘Sign in to continue’ and suffer : Attackers abusing legitimate services for credential theft – Check Point Blog

June 16, 2023October 15, 2025 Securonix

Check Point Research identified ongoing phishing campaigns that abuse legitimate form services to harvest credentials and exfiltrate data, helping attackers evade detection. The attackers rely on HTML attachments masquerading as login pages and employ services…

Read More
Threat Research

XeGroup’s attack techniques – Blog | Menlo Security

May 29, 2023October 16, 2025 Securonix

XeGroup is a long-running threat actor whose re-emergence involves opportunistic operations such as credit-card skimming, fake websites, and data sale on the dark web. The group exploits public-facing applications (notably CVE-2019-18935 on IIS), deploys ASPXS…

Read More
Threat Research

Shedding light on AceCryptor and its operation

May 26, 2023October 18, 2025 Securonix

AceCryptor is a long-running cryptor that packs tens of malware families and uses extensive obfuscation and anti-analysis techniques to hide its payload. ESET researchers describe its three-layer architecture, diverse distribution, and the scale of its impact …

Read More
Threat Research

The Phantom Menace: Brute Ratel remains rare and targeted

May 12, 2023October 13, 2025 Securonix

Brute Ratel remains rare and targeted, with limited real-world use and far fewer detections than Cobalt Strike. Sophos notes that cracked versions and targeted deployments have kept it from becoming the widespread threat feared, while defenders continue to mon…

Read More
Threat Research

Cyble – Unraveling Akira Ransomware

May 8, 2023October 14, 2025 Securonix

Akira is a newly observed ransomware strain that uses double-extortion by exfiltrating data before encryption and threatening publication or sale of stolen information. Cyble CRIL documents its behavior, including drive enumeration, file targeting, ransom note…

Read More
Threat Research

Dark Web Profile: BlackByte Ransomware – SOCRadar® Cyber Intelligence Inc.

April 26, 2023October 15, 2025 Securonix

The article analyzes BlackByte, a Russian-based ransomware operation operating as a RaaS that uses double-extortion and has evolved its techniques since 2021, including a shift from C# to GoLang and the use of legitimate tools. It also highlights notable incid…

Read More
Threat Research

RTM Locker Ransomware as a Service (RaaS) Now on Linux – Uptycs

April 21, 2023October 16, 2025 Securonix

RTM Locker marks the RTM group’s first Linux ransomware binary, targeting Linux, NAS, and ESXi hosts, and appears inspired by Babuk’s leaked source code, using ECDH Curve25519 and ChaCha20 for file encryption. Uptycs provides detection guidance with XDR and YA…

Read More
Threat Research

Threat Actors Rapidly Adopt Web3 IPFS Technology

April 17, 2023October 16, 2025 Securonix

Unit 42 observed a rapid shift toward using IPFS as a vehicle for malicious activity in 2022, spanning phishing, credential theft, C2 communications, and payload delivery. The decentralized, bullet-proof hosting nature of IPFS makes takedowns difficult, enabli…

Read More
Threat Research

Cyble – CrossLock Ransomware Emerges: New GoLang-Based Malware On The Horizon

April 13, 2023October 13, 2025 Securonix

CrossLock is a Go-based ransomware that encrypts victims’ data and exfiltrates it for double-extortion. It uses ETW event tracing bypass, extensive cleanup of backups and logs, and service disruption to hinder recovery and pressure victims to pay. #CrossLock #…

Read More
Threat Research

Ex-Conti and FIN7 Actors Collaborate with New Backdoor

April 12, 2023October 15, 2025 Securonix

Two former Conti and FIN7 affiliates are linked to a new backdoor family named Minodo, delivered alongside Dave Loader and other ITG14/ITG23-aligned tooling, with Nemesis infostealer as a key payload. The campaign chain shows cross-group collaboration, overlap…

Read More
Threat Research

Typhon Reborn V2: Updated stealer features enhanced anti-analysis and evasion capabilities

March 31, 2023October 17, 2025 Securonix

Typhon Reborn V2 is a rebuilt information stealer with significantly enhanced anti-analysis, anti-VM, and obfuscation capabilities, designed to evade security researchers and detections. It exfiltrates collected data via Telegram and is sold cheaply on undergr…

Read More
Threat Research

Ransomware Roundup – Dark Power and PayMe100USD Ransomware | FortiGuard Labs

March 30, 2023October 14, 2025 Securonix

Fortinet FortiGuard Labs’ bi-weekly Ransomware Roundup highlights Dark Power and PayME100USD, outlining their file-encrypting behavior on Windows and the actor’s apparent data-leak threats, with Fortinet-provided protections and best practices. The report note…

Read More
Threat Research

Rhadamanthys: The “Everything Bagel” Infostealer – Check Point Research

March 30, 2023October 15, 2025 Securonix

Rhadamanthys is a feature-rich infostealer that debuted on the dark web and has drawn attention for its expansive, “everything on a bagel” design. The Check Point Research analysis covers its multi-stage loader, forensic methods to resolve in-memory API calls,…

Read More
Threat Research

Cyble – Cl0p Ransomware: Active Threat Plaguing Businesses Worldwide

March 30, 2023October 13, 2025 Securonix

Cyble detailed Cl0p Ransomware’s global activity, highlighting its shift to a Ransomware-as-a-Service model, double extortion, and multi-vector infection techniques across industries and regions. It also notes Linux variants and a public leak site, with techni…

Read More

Posts pagination

Previous 1 … 181 182 183 … 185 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.