Summary: A comprehensive study by independent researcher Ovie reveals the significant and targeted cyber threats aimed at civil society organizations (CSOs) in South Korea, particularly those advocating for human rights and North Korean issues. The research highlights the sophisticated methods emplo…
Tag: SPYWARE
Summary: Francesco Cancellato, an undercover journalist and editor-in-chief of the Italian newspaper Fanpage, reveals having been targeted by spyware, part of a broader trend of surveillance against critical voices in Italy. Cancellato, along with others, fears that the increasing use of such techno…
This article provides an in-depth analysis of a NanoCore Remote Access Trojan (RAT) sample identified by the hash 18B476D37244CB0B435D7B06912E9193, highlighting its behavior, obfuscation techniques, persistence methods, and communication with command-and-contr…
Summary: The Italian government faced allegations of spying on journalists and activists using military-grade spyware, which was reportedly supplied by Israeli firm Paragon Solutions. While the government denied these claims and emphasized compliance with the law, it initiated an investigation into…
Summary: Apple has issued a security update to address a vulnerability, tracked as CVE-2025-24200, that may have been exploited in sophisticated attacks targeting specific individuals. This vulnerability could disable USB Restricted Mode on locked devices, compromising user security. All users of af…
Summary: Apple has addressed a critical vulnerability in its mobile operating systems, which could have enabled unauthorized access to locked devices through restricted mode. This flaw, reported by digital forensic researcher Bill Marczak, poses a serious risk as it may have been exploited in target…
Summary: Apple has released an urgent patch for iOS and iPadOS to address a critical security flaw, CVE-2025-24200, that enables attackers with physical access to disable USB Restricted Mode on locked devices. This vulnerability could allow for sophisticated attacks and was discovered by Bill Marcza…
Summary: Apple has issued urgent security updates to address a zero-day vulnerability affecting iPhones and iPads, which was reportedly exploited in highly targeted attacks against specific individuals. This vulnerability allows potential bypass of the USB Restricted Mode, a feature designed to prot…
Abyss Locker is a new ransomware threat group that emerged in 2023, targeting critical network devices, particularly focusing on vulnerabilities in VPN appliances for initial access. The group employs various techniques, including credential harvesting and lat…
Summary: This week’s cybersecurity news roundup includes notable stories about recent criminal charges, innovative security tools, evolving malware threats, and significant industry changes. Among the highlights are updated telematics security guidelines, a transparency report from NSO Group, and sa…
Summary: A significant malicious campaign named FatBoyPanel has been uncovered by Zimperium, targeting Android users in India to steal personal and banking information through over 1,000 malicious applications. The campaign uniquely utilizes live phone numbers for OTP theft, and it is attributed to…
Bitdefender Labs warns of an active campaign by the North Korea-linked Lazarus Group, targeting organizations by capturing credentials and delivering malware through fake LinkedIn job offers.
LinkedIn may be a vital tool for job seekers and professionals, but it has also become a playground for cybercriminals exploiting its credibility. From fake job…
Summary: A broad hacking campaign involving Paragon Solutions spyware has targeted seven Italians and victims across over a dozen European countries, as reported by the Italian government. The country’s cybersecurity agency is investigating the attacks, which allegedly involved various prominent ind…
In March 2023, malware was detected in various messaging app mods that targeted Android and Windows users, focusing on crypto wallet recovery phrases found in users’ image galleries. This campaign, dubbed “SparkCat,” utilized OCR technology to exfiltrate sensi…
Summary: A recent zero-click attack targeted WhatsApp users, including journalists and civil society members, potentially compromising their accounts without any user interaction. The spyware, known as Graphite, was sourced from Paragon Solutions, an Israeli software company. Meta has issued alerts…