Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: SSO

Threat Research

BiBi-Linux: A New Wiper Dropped By Pro-Hamas Hacktivist Group

October 24, 2023October 20, 2025 Securonix

Security Joes Incident Response identified a new Linux wiper sample linked to Hamas-affiliated hacktivists, named BiBi-Linux Wiper, observed targeting Israeli companies. The malware destroys data by overwriting files, renaming them with a BiBi-containing exten…

Read More
Threat Research

Higaisa APT Resurfaces Via Phishing Website Targeting Chinese Users – Cyble

October 21, 2023October 13, 2025 Securonix

Cyble CRIL uncovered a new Higaisa APT operation that uses a phishing site impersonating legitimate VPN software to deliver a Rust-based payload. The malware features anti-debugging, shellcode decryption, and encrypted C2 communication, with connections to add…

Read More
Threat Research

Hamas Application Infrastructure Reveals Possible Overlap With TAG-63 and Iranian Threat Activity

October 20, 2023October 16, 2025 RecordedFuture

Insikt Group identified an application disseminated on a Telegram Channel used by members or supporters of the Hamas terrorist organization

Read More
Threat Research

Hong Kong residents targeted in malvertising campaigns for WhatsApp, Telegram

October 20, 2023October 17, 2025 Securonix

Two campaigns targeted at Hong Kong residents used malvertising to push fake WhatsApp Web and Telegram pages, tricking victims into scanning QR codes or downloading malware. The operators aimed to steal data, impersonate accounts, and compromise devices, with …

Read More
Threat Research

Akira Stealer : An Undetected Python Based Info-stealer – CYFIRMA

October 18, 2023October 16, 2025 Securonix

Akira Stealer is a Python-based information stealer offered as Malware-as-a-Service (MaaS) via a dedicated portal at Akira.red, with Telegram used for updates and command-and-control. It harvests credentials, financial data, and system information, exfiltratin…

Read More
Threat Research

Kimsuky Threat Group Uses RDP to Control Infected Systems – ASEC BLOG

October 13, 2023October 16, 2025 Securonix

Kimsuky, a North Korea–sponsored threat group, leverages spearphishing and a suite of backdoors, infostealers, and remote-control tools to gain access and exfiltrate data from targets. The operation prominently relies on RDP and related tools (including RDP wr…

Read More
Threat Research

Grayling: Previously Unseen Threat Actor Targets Multiple Organizations in Taiwan

October 12, 2023October 17, 2025 Securonix

Symantec Threat Hunter Team attributes a new APT group, Grayling, to a campaign targeting multiple organizations in Taiwan’s manufacturing, IT, and biomedical sectors, with additional victims in the Pacific Islands government, Vietnam, and the U.S. The operati…

Read More
Threat Research

Peeling off QR Code Phishing Onion

October 12, 2023October 14, 2025 Securonix

Two QR-code-based phishing campaigns are analyzed, showing attackers bypass email security by using images of text and QR codes in emails and attachments instead of readable URLs. The campaigns employ layered evasion (redirection, anti-bot checks, CAPTCHA evas…

Read More
Threat Research

Threat Actors Exploit Atlassian Confluence CVE-2023-22515 for Initial Access to Networks | CISA

October 10, 2023October 15, 2025 Securonix

The advisory describes active exploitation of CVE-2023-22515 in Atlassian Confluence Data Center and Server, enabling threat actors to create unauthorized Confluence administrator accounts and gain initial access. It also covers post-exploitation data exfiltra…

Read More
Threat Research

Phylum Discovers SeroXen RAT in Typosquatted NuGet Package

October 9, 2023October 15, 2025 Securonix

Phylum detected a typosquatted NuGet package that delivered the SeroXen RAT, demonstrating how open-source ecosystems can be abused. The post details the typosquatted package, its obfuscated payload chain (PowerShell, batch scripts, DLLs), and download-count a…

Read More
Threat Research

Phishers Spoof USPS, 12 Other Natl’ Postal Services – Krebs on Security

October 5, 2023October 16, 2025 Securonix

A spike in phishing scams targets USPS customers with SMS messages that spoof the postal service and direct users to deceptive domains to harvest personal and financial data, as well as targeting other national postal services. The operation uses USPS-branded …

Read More
Threat Research

Typosquatting campaign delivers r77 rootkit via npm

October 4, 2023October 16, 2025 Reversinglabs

ReversingLabs discovered a typosquatting npm package, node-hide-console-windows, that downloaded a DiscordRAT 2.0 executable which can deploy the r77 fileless ring‑3 rootkit to hide processes and paths. The malicious package also fetched a PyInstaller‑compiled…

Read More
Threat Research

X-Force uncovers global NetScaler Gateway credential harvesting campaign

September 30, 2023October 13, 2025 Securonix

X-Force uncovered a global NetScaler Gateway credential harvesting campaign that exploits CVE-2023-3519 to inject a credential-harvesting script into authentication pages. Attackers used attacker-controlled domains, web shells, and NSPPE crash artifacts to ena…

Read More
Cyber Security News

What we know about BlackCat and the MGM hack

September 28, 2023September 29, 2025 Reversinglabs

More than a week after it suffered a crippling ransomware attack, the hotel giant MGM is struggling to recover. The attack, linked to the ransomware-as-a-service (RaaS) group known as ALPHV, or BlackCat, caused slot machines and ATMs in MGM’s Las Vegas hotels to go dark and forced hotel staff to rev…

Read More
Threat Research

Qakbot-affiliated actors distribute Ransom Knight malware despite infrastructure takedown

September 28, 2023October 15, 2025 Securonix

Talos reports that Qakbot-affiliated actors have been distributing Ransom Knight ransomware and the Remcos backdoor via phishing emails since early August 2023, continuing despite the FBI’s late August 2023 infrastructure seizure. The operation suggests the de…

Read More

Posts pagination

Previous 1 … 495 496 497 … 523 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.