Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: DARK WEB

Threat Research

eSentire Threat Intelligence Malware Analysis: Redline Stealer

December 2, 2022October 16, 2025 Securonix

Redline Stealer is a popular credential stealer distributed via fake software and advertising channels, featuring obfuscation, loader capabilities, and C2 over a non-standard channel. The threat actor uses an AutoIt wrapper, a configurable loader, and a robust…

Read More
Threat Research

CISA Alert AA22-335A: Cuba Ransomware Analysis, Simulation, TTPs & IOCs

November 30, 2022October 15, 2025 Picussecurity

The Cuba Ransomware group Tropical Scorpius is analyzed in relation to its Cuba variant, including attack simulations added by Picus Threat Library. The report maps out a wide set of TTPs from initial access to impact, and notes connections to the Industrial S…

Read More
Threat Research

Erbium Stealer Malware Report – CYFIRMA

November 24, 2022October 13, 2025 Securonix

Erbium Stealer is an information-stealing malware distributed as MaaS, observed by CYFIRMA in Aug-2022 and advertised on Russian-speaking forums. It decrypts obfuscated code, drops a DLL in %temp%, loads it via LoadLibraryA, and communicates with a C2 panel an…

Read More
Threat Research

Aurora: a rising stealer flying under the radar

November 15, 2022October 16, 2025 Securonix

Aurora began as a Golang MaaS botnet advertised by Cheshire and Zelizzard, and evolved into an infostealer adopted by multiple traffers, with activity that later slowed and then resurged in different forms. Sekoia.io’s analysis shows multifaceted data collecti…

Read More
Threat Research

Fielding Threats: Cyber, Influence, and Physical Threats to the 2022 FIFA World Cup in Qatar | Recorded Future

November 15, 2022October 17, 2025 Securonix

Recorded Future’s Insikt Group analyzes the threat landscape around the 2022 FIFA World Cup in Qatar, covering state-sponsored cyber operations, cybercrime, influence operations, and physical security threats. The assessment finds no imminent disruptive cyber …

Read More
Threat Research

Cyble – AXLocker, Octocrypt, And Alice: Leading A New Wave Of Ransomware Campaigns

November 15, 2022October 19, 2025 Securonix

AXLocker, Octocrypt, and Alice ransomware families are analyzed, detailing AXLocker’s file encryption alongside its Discord token theft, and presenting Octocrypt and Alice as RaaS-style offerings with builder tools and wallet-based ransom models. The piece emp…

Read More
Threat Research

How LNK Files Are Abused by Threat Actors

November 4, 2022October 16, 2025 Securonix

LNK (Shell Link) files are Windows shortcuts that threat actors increasingly abuse to execute binaries and stage attacks, including delivering payloads via PowerShell, VBScript, or MSHTA. The article explains the LNK file format, how attackers leverage it in s…

Read More
Threat Research

Cyble – New Laplas Clipper Distributed Via SmokeLoader

October 27, 2022October 16, 2025 Securonix

Cyble Research and Intelligence Labs tracks SmokeLoader campaigns that carry SystemBC and Raccoon Stealer 2.0 (RecordBreaker) alongside a new clipper named Laplas Clipper targeting cryptocurrency users. Laplas Clipper uses clipboard hijacking to swap wallet ad…

Read More
Threat Research

Cyble – Infostealer Distributed Using Bundled Installer

October 14, 2022October 14, 2025 Securonix

Cyble researchers describe Temp Loader and Temp Stealer, malicious tools advertised on the Dark Web that bundle with cracked software to drop a loader and an information stealer. The malware targets crypto wallets and various data sources, uses anti-VM and Run…

Read More
Threat Research

Ransom Cartel Ransomware: A Possible Connection With REvil

October 12, 2022October 14, 2025 Securonix

Ransom Cartel emerged as a ransomware-as-a-service operation around late 2021, showing double-extortion techniques and notable overlaps with REvil, including possible ties to REvil’s code and infrastructure. The report analyzes Ransom Cartel’s TTPs, comparison…

Read More
Threat Research

Excel Document Delivers Multiple Malware by Exploiting CVE-2017-11882 – Part II | FortiGuard Labs

October 3, 2022October 16, 2025 Securonix

FortiGuard Labs analyzed an Excel document delivering Redline malware via CVE-2017-11882. The loader uses in-memory techniques and persistence via Task Scheduler to exfiltrate sensitive data to a C2 server over HTTP using a WCF SOAP channel. Hashtags: #Redline…

Read More
Threat Research

Delivery of Malware: A Look at Phishing Campaigns in Q3 2022 | FortiGuard Labs

September 30, 2022October 16, 2025 Securonix

Fortinet FortiGuard Labs analyzes phishing-driven malware campaigns in Q3 2022, highlighting the use of HTML Smuggling, Excel 4.0 macros, Word VBA macros, and ISO image delivery to drop Emotet, Qbot, and Icedid. The report details multiple delivery chains and …

Read More
Threat Research

Revealing Emperor Dragonfly: Night Sky and Cheerscrypt – A Single Ransomware Group – Sygnia

September 26, 2022October 16, 2025 Securonix

Sygnia attributes Cheerscrypt and Night Sky to the same actor, Emperor Dragonfly, a China-based group that rebrands payloads across campaigns. The investigation shows Emperor Dragonfly deploys Windows and ESXi ransomware, uses open-source Go tools, and conduct…

Read More
Threat Research

Agent Tesla RAT Delivered by Quantum Builder With New TTPs

September 21, 2022October 14, 2025 Securonix

ThreatLabz details a campaign delivering Agent Tesla via a configurable “Quantum Builder,” which creates LNK, HTA, and ISO payloads to execute a multi-stage infection. The campaign uses obfuscated PowerShell, LOLBins, and UAC bypass techniques to obtain admin …

Read More
Threat Research

Void Balaur | The Sprawling Infrastructure of a Careless Mercenary

September 21, 2022October 14, 2025 Securonix

Void Balaur is a prolific cyber mercenary group expanding its hack-for-hire campaigns globally through 2022, continuing to adapt its operations despite disruptions to its advertising personas. The group targets a broad mix of individuals and organizations, foc…

Read More

Posts pagination

Previous 1 … 183 184 185 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.