Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: SSO

Threat Research

Chinese PlugX Malware Hidden in Your USB Devices?

January 20, 2023October 16, 2025 Securonix

Unit 42 analyzes PlugX variants hidden on USB devices, detailing novel USB infection and hiding techniques as part of a broader Black Basta-related investigation. The findings show USB-based persistence, stealthy file hiding, and multiple PlugX variants linked…

Read More
Threat Research

CVE-2022-47966: Rapid7 Observed Exploitation of Critical ManageEngine Vulnerability | Rapid7 Blog

January 19, 2023October 16, 2025 Securonix

Rapid7 analyzes exploitation activity surrounding CVE-2022-47966, a pre-authentication RCE in ManageEngine on-premise products, noting public PoC code and ongoing compromises since January 2023. Organizations using affected products should patch and monitor fo…

Read More
Threat Research

Ransomware Diaries: Volume 1 | Analyst1

January 17, 2023October 17, 2025 Securonix

Analyst1 presents a human-centric examination of the LockBit operation, tracing its evolution from ABCD to LockBit Red/Black and detailing the personalities, inter-gang dynamics, and operational innovations behind one of the world’s most prolific ransomware or…

Read More
Threat Research

Malicious JQuery & JavaScript – Threat Detection & Incident Response – Security Investigation

January 17, 2023October 14, 2025 Securonix

The article explains how attackers exploit jQuery and JavaScript to inject malicious code into legitimate websites, including disguising malware as legitimate jQuery plugins and stealing credentials through deceptive login forms. It also outlines an incident r…

Read More
Threat Research

GuLoader Deploying Remcos RAT – CYFIRMA

January 17, 2023October 14, 2025 Securonix

A CYFIRMA report details a phishing campaign that delivers GuLoader to download Remcos RAT via a heavily obfuscated VBScript loader. The operation uses PowerShell, LNK shortcuts, and in-memory process injection to establish C2 and persistence. #GuLoader #Remco…

Read More
Threat Research

Following the LNK metadata trail

January 13, 2023October 15, 2025 Securonix

Cisco Talos analyzed LNK file metadata to track threat actors like Qakbot, Gamaredon, Bumblebee, and IcedID, showing how metadata can reveal campaign connections. As macros were blocked and actors shifted to LNK-based attachments, the article demonstrates how …

Read More
Threat Research

Batloader Malware Abuses Legitimate Tools Uses Obfuscated JavaScript Files in Q4 2022 Attacks

January 13, 2023October 14, 2025 Securonix

This report analyzes Batloader campaigns observed in Q4 2022 linked to the Water Minyades intrusion set, highlighting its use of obfuscated JavaScript, MSI/JS payloads, and abuse of legitimate tools to evade defenses. It details how Batloader can drop multiple…

Read More
Threat Research

Malicious Google Ad –> Fake Notepad++ Page –> Aurora Stealer malware

January 12, 2023October 31, 2025 Securonix

Attackers use Google ads to lure users to fake Notepad++ download pages that install Aurora Stealer. The article traces the infection chain from the ad-driven page to the downloaded malware and its post-infection C2 traffic, and lists the associated IOCs.

Read More
Threat Research

CircleCI incident report for January 4, 2023 security incident

January 12, 2023October 16, 2025 Securonix

CircleCI disclosed a security incident involving unauthorized access via a compromised engineer’s laptop, enabling theft of session cookies and keys across production environments. The company rotated secrets, expanded security measures, and shared new tooling…

Read More
Threat Research

Earth Bogle: Campaigns Target the Middle East with Geopolitical Lures

January 11, 2023October 14, 2025 Securonix

Trend Micro details an active Earth Bogle campaign targeting the Middle East and North Africa that uses geopolitical-themed lures to distribute NjRAT (Bladabindi). Attackers host payloads on public cloud storage and compromised web servers, distributing them v…

Read More
Threat Research

PurpleUrchin Bypasses CAPTCHA and Steals Cloud Platform Resources

January 10, 2023October 14, 2025 Securonix

Unit 42 researchers examine Automated Libra, the cloud threat actor behind PurpleUrchin, which freejacks cloud resources to mine cryptocurrency. They reveal CI/CD automation, massive GitHub and cloud account creation, CAPTCHA exploitation, and a Play and Run t…

Read More
Threat Research

QakBot Malware Bypass Windows Security Using Unpatched Vulnerability

January 10, 2023October 15, 2025 Securonix

EclecticIQ details a QakBot phishing campaign that bypasses Windows Mark of the Web (MoTW) using an unpatched vulnerability, enabling malware installation. The campaign leverages LOLBINS like Regsvr32 and WScript, delivers payloads via encrypted ZIP/ISO, and c…

Read More
Threat Research

Orcus RAT Being Distributed Disguised as a Hangul Word Processor Crack – ASEC BLOG

January 10, 2023October 13, 2025 Securonix

Orcus RAT is being distributed on file-sharing sites disguised as a cracked Hangul Word Processor, linked to the same actor who previously pushed BitRAT and XMRig under a Windows license verifier guise. The campaign employs a multi-stage delivery chain with ob…

Read More
Threat Research

NoName057(16) – The Pro-Russian Hacktivist Group Targeting NATO

January 5, 2023October 14, 2025 Securonix

NoName057(16) is a pro-Russian hacktivist group conducting DDoS campaigns targeting Ukraine, NATO, and other entities, leveraging Telegram, a volunteer-driven DDoS program, and a GitHub-hosted toolkit. The group has impacted several sectors including governmen…

Read More
Threat Research

Cyble – LummaC2 Stealer: A Potent Threat To Crypto Users

December 28, 2022October 18, 2025 Securonix

CRIL researchers uncovered LummaC2 Stealer, a 32-bit GUI malware targeting Chromium and Mozilla browsers to exfiltrate crypto wallets, browser extensions, and 2FA data. The campaign includes a Russian-language seller site, Telegram channels, and active C2 serv…

Read More

Posts pagination

Previous 1 … 508 509 510 … 523 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.