Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: SSO

Threat Research

AsyncRAT Being Distributed as Windows Help File (*.chm) – ASEC BLOG

February 7, 2023October 15, 2025 Securonix

AsyncRAT is being distributed through Windows CHM (CHM) files, with a multi-stage chain that downloads and executes payloads via mshta, VBScript, and HTA. The campaign culminates in a fileless AsyncRAT deployment featuring anti-VM, keylogging, and screenshot c…

Read More
Threat Research

#StopRansomware: Ransomware Attacks on Critical Infrastructure Fund DPRK Malicious Cyber Activities | CISA

February 6, 2023October 15, 2025 Securonix

The advisory outlines ongoing DPRK state-sponsored ransomware activity targeting Healthcare and Public Health Sector organizations and other critical infrastructure, detailing TTPs, IOCs, and cryptocurrency ransom payments. It also describes how actors acquire…

Read More
Threat Research

Quasar RAT Being Distributed by Private HTS Program – ASEC BLOG

February 4, 2023October 14, 2025 Securonix

ASEC’s analysis reveals Quasar RAT being distributed via a private Home Trading System (HTS) called HPlus, used by illicit investment groups to lure victims and install malware. The campaign shows HTS masquerading as legitimate investment services, delivering …

Read More
Threat Research

Collect, Exfiltrate, Sleep, Repeat

February 1, 2023October 19, 2025 TheDFIR

Two sentences summarizing the intrusion: An August 2022 incident began with a malicious Word document carrying a VBA macro that installed a PowerShell-based implant, established persistence via scheduled tasks, and used a renamed AutoHotkey-based keylogger to …

Read More
Threat Research

Supply Chain Attack by New Malicious Python Package, “web3-essential” | FortiGuard Labs

February 1, 2023October 13, 2025 Securonix

FortiGuard Labs detected a zero-day in a PyPI package named “web3-essential,” published by a newly joined user known as ‘Trexon’ on January 26, 2023. The package downloads and executes a Go-based binary to steal sensitive data and exfiltrate it via a Discord w…

Read More
Threat Research

Operation Ice Breaker Targets The Gam(bl)ing Industry Right Before It’s Biggest Gathering

February 1, 2023October 15, 2025 Securonix

IceBreaker APT is a newly tracked threat targeting the gambling/gaming sector in the run-up to ICE London, employing social-engineering to lure a customer-service agent and delivering a two-stage payload chain. Researchers describe a modular Node.js-based back…

Read More
Threat Research

Cyble – New BATLoader Disseminates RATs And Stealers

February 1, 2023October 17, 2025 Securonix

Cyble Research & Intelligence Labs details a new BAT loader used to disseminate RATs and stealers via OneNote attachments delivered through spam emails. The article walks through the infection chain, the obfuscated BAT loader, in-memory .NET payload loading (Q…

Read More
Threat Research

Machine Learning Versus Memory Resident Evil

January 27, 2023October 16, 2025 Securonix

Unit 42 researchers describe a machine learning pipeline that analyzes memory-based artifacts from a hypervisor-based sandbox to detect evasive malware like GuLoader. The article discusses limitations of static and sandbox analysis and demonstrates how memory-…

Read More
Threat Research

Rapid7 observes use of Microsoft OneNote to spread Redline Infostealer | Rapid7 Blog

January 27, 2023October 13, 2025 Securonix

Rapid7 observed attackers using Microsoft OneNote to deliver base64-encoded payloads that decrypt to Redline Infostealer or AsyncRat, via a multi-stage chain starting with a phishing OneNote attachment. The analysis details how a hidden batch script launches a…

Read More
Threat Research

Cyble – Vector Stealer: A Gateway For RDP Hijacking

January 27, 2023October 13, 2025 Securonix

VectorStealer is an information-stealer capable of harvesting data from browsers, chat apps, and .rdp session files, enabling threat actors to perform RDP hijacking and remote access. It is sold via a web panel and Telegram channel, uses the KGB Crypter and Ko…

Read More
Threat Research

Fresh Phish: Southwest’s Flying Phish Takes Off With Your Credentials

January 27, 2023October 13, 2025 Securonix

INKY uncovered a widespread Southwest Airlines credential harvesting phishing campaign that uses newly created domains to lure victims via a fake survey and gift-card offer. The scam escalates from impersonation and enticing branding to a credential-harvesting…

Read More
Threat Research

Following the Scent of TrickGate: 6-Year-Old Packer Used to Deploy the Most Wanted Malware – Check Point Research

January 26, 2023October 22, 2025 Securonix

TrickGate is a transformative, shellcode-based packer-as-a-service used to conceal malware from security tools since 2016 and has wrapped a wide range of threats including Cerber, Trickbot, Maze, and Emotet. The packer’s core building blocks—shellcode loader, …

Read More
Threat Research

Welcome to Goot Camp: Tracking the Evolution of GOOTLOADER Operations

January 25, 2023October 13, 2025 Securonix

The article explains how to reconstruct Gootloader registry payloads using off-host Python scripts and CyberChef workflows, as well as on-host PowerShell decoding. It also catalogs technical indicators, network signals, and YARA rules related to GOOTLOADER, FO…

Read More
Threat Research

ASEC Weekly Phishing Email Threat Trends (January 8th, 2023 – January 14th, 2023) – ASEC BLOG

January 23, 2023October 15, 2025 Securonix

ASEC’s weekly briefing analyzes phishing email threats from January 8–14, 2023, highlighting attachments as the main delivery method for Infostealer, FakePage, and other malware families, including OneNote (.ONE) extensions. It also outlines case distributions…

Read More
Threat Research

Cyble – Titan Stealer: The Growing Use Of GoLang Among Threat Actors

January 20, 2023October 18, 2025 Securonix

Threat actors are increasingly using Go (Golang) to develop cross‑platform information stealers, with Titan Stealer highlighted as a recent example. The article covers Titan Stealer’s Go-based builder, its C2 infrastructure and dashboards, the data it collects…

Read More

Posts pagination

Previous 1 … 507 508 509 … 523 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.