Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: INITIAL ACCESS

Threat Research

Dalbit (m00nlight): Chinese Hacker Group’s APT Attack Campaign – ASEC BLOG

February 7, 2023October 16, 2025 Securonix

Dalbit (Moonlight) is a threat group tracked by AhnLab’s ASEC, which has conducted 50+ attacks against Korean companies since 2022 using open-source tools, WebShells, and proxy-based C2 infrastructure through *.m00nlight.top. The operation progresses from init…

Read More
Threat Research

#StopRansomware: Ransomware Attacks on Critical Infrastructure Fund DPRK Malicious Cyber Activities | CISA

February 6, 2023October 15, 2025 Securonix

The advisory outlines ongoing DPRK state-sponsored ransomware activity targeting Healthcare and Public Health Sector organizations and other critical infrastructure, detailing TTPs, IOCs, and cryptocurrency ransom payments. It also describes how actors acquire…

Read More
Threat Research

HTML Smuggling: The Hidden Threat in Your Inbox | Trustwave

February 6, 2023October 17, 2025 Securonix

HTML smuggling is a rising method used by criminals to deliver malware via HTML attachments and archives masquerading as legitimate brands. The Trustwave SpiderLabs piece catalogs campaigns by Qakbot, IcedID, Cobalt Strike, and Xworm that abuse HTML smuggling …

Read More
Threat Research

NewsPenguin, a Previously Unknown Threat Actor, Targets Pakistan with Advanced Espionage Tool

February 5, 2023October 14, 2025 Securonix

NewsPenguin, a previously unknown threat actor, targeted organizations in Pakistan using spear-phishing tied to the Pakistan International Maritime Expo & Conference (PIMEC-2023) and delivered a multi-stage payload. The final espionage tool is XOR-encrypted wi…

Read More
Threat Research

Analysis of ESXiArgs Ransomware | SECUINFRA

February 4, 2023October 13, 2025 Securonix

ESXiArgs is a ransomware variant that targeted exposed ESXi hypervisors by exploiting CVE-2021-21974 via OpenSLP to deploy a Python-based backdoor and a web shell. The campaign encrypts virtual machine data using RSA and Sosemanuk, overwrites ransom notes on t…

Read More
Threat Research

TA866 Threat Actor: WasabiSeed & Screenshotter Malware | Proofpoint US

February 2, 2023October 16, 2025 Securonix

Proofpoint tracks a new financially motivated threat actor cluster, TA866, linked to the Screentime activity that uses custom tools WasabiSeed and Screenshotter to gather victim information via screenshots before deploying additional payloads. The operation le…

Read More
Threat Research

Operation Ice Breaker Targets The Gam(bl)ing Industry Right Before It’s Biggest Gathering

February 1, 2023October 15, 2025 Securonix

IceBreaker APT is a newly tracked threat targeting the gambling/gaming sector in the run-up to ICE London, employing social-engineering to lure a customer-service agent and delivering a two-stage payload chain. Researchers describe a modular Node.js-based back…

Read More
Threat Research

Collect, Exfiltrate, Sleep, Repeat

February 1, 2023October 19, 2025 TheDFIR

Two sentences summarizing the intrusion: An August 2022 incident began with a malicious Word document carrying a VBA macro that installed a PowerShell-based implant, established persistence via scheduled tasks, and used a renamed AutoHotkey-based keylogger to …

Read More
Threat Research

Ransomware Roundup – Trigona | FortiGuard Labs

February 1, 2023October 18, 2025 Securonix

Fortinet’s FortiGuard Labs highlights the Trigona ransomware in its bi-weekly Ransomware Roundup, detailing its double-extortion approach of encrypting endpoints and threatening to leak exfiltrated data. The report covers suspected infection vectors (emails, R…

Read More
Threat Research

HeadCrab: A Novel State-of-the-Art Redis Malware

January 30, 2023October 16, 2025 Aquasec

HeadCrab is a novel, memory-resident Redis malware that has quietly compromised Redis servers worldwide since 2021, forming a botnet of at least 1,200 servers. It loads a custom Redis module via SLAVEOF/master replication, operates entirely in memory to evade …

Read More
Threat Research

The Rising Threat of OneNote Malware | Proofpoint US

January 28, 2023October 16, 2025 Securonix

Proofpoint researchers report a rising trend of malware delivery via OneNote attachments in email campaigns from December 2022 to January 2023, spanning multiple threat actors and broad targets. End users must interact with embedded OneNote content to execute …

Read More
Threat Research

Rapid7 observes use of Microsoft OneNote to spread Redline Infostealer | Rapid7 Blog

January 27, 2023October 13, 2025 Securonix

Rapid7 observed attackers using Microsoft OneNote to deliver base64-encoded payloads that decrypt to Redline Infostealer or AsyncRat, via a multi-stage chain starting with a phishing OneNote attachment. The analysis details how a hidden batch script launches a…

Read More
Threat Research

Cyble – Vector Stealer: A Gateway For RDP Hijacking

January 27, 2023October 13, 2025 Securonix

VectorStealer is an information-stealer capable of harvesting data from browsers, chat apps, and .rdp session files, enabling threat actors to perform RDP hijacking and remote access. It is sold via a web panel and Telegram channel, uses the KGB Crypter and Ko…

Read More
Threat Research

IcedID Malware Shifts Its Delivery Strategy

January 27, 2023October 17, 2025 Securonix

IcedID has shifted from email-based delivery to drive-by infections delivered via Google Search Ads that target common enterprise applications. The TRU team explains how ads, cloaking, and a Cobalt Strike foothold are used to compromise endpoints and deliver I…

Read More
Threat Research

Uncovering LockBit Black’s Attack Chain and Anti-Forensic Activity

January 26, 2023October 18, 2025 Securonix

LockBit 3.0, also known as LockBit Black, demonstrates advanced anti-forensic and rapid encryption tactics, including log clearing, service deletion, and Windows Defender evasion. The campaign gains initial access via SMB brute-forcing from various IPs and use…

Read More

Posts pagination

Previous 1 … 208 209 210 … 224 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.