Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: SSO

Threat Research

Exposing TAG-53’s Credential Harvesting Infrastructure Used for Russia-Aligned Espionage Operations

November 30, 2022October 14, 2025 Securonix

Insikt Group profiles TAG-53 infrastructure that overlaps with Callisto Group, COLDRIVER, and SEABORGIUM, detailing patterns in domain naming, TLS certificates from Let’s Encrypt, hosting clusters, and a small set of autonomous systems, suggesting long-running…

Read More
Threat Research

Cyble – DuckLogs – New Malware Strain Spotted In The Wild

November 22, 2022October 13, 2025 Securonix

Cyble Research and Intelligence Labs reports a new Malware-as-a-Service strain, DuckLogs, that bundles stealer, keylogger, clipper, and remote access capabilities for threat actors. It features a sophisticated web panel for building, monitoring, and deploying …

Read More
Threat Research

How IoT Botnets Evade Detection and Analysis – Part 2

November 22, 2022October 15, 2025 Securonix

IoT botnets are increasingly evading detection as attackers modify malware to hide from analysts, using UPX packing, ELF header changes, and other anti-analysis tricks. The study of 728 IoT samples collected from honeypots over 15 days also shows how attackers…

Read More
Threat Research

Word Documents Disguised as Normal MS Office URLs Being Distributed – ASEC BLOG

November 18, 2022October 14, 2025 Securonix

Malware disguised as Word documents is being distributed via KakaoTalk group chats, using Template Injection to pull remote content from cleverly disguised URLs. Users are urged to verify sources and keep Office updated to avoid infection. #Kimsuky #TemplateIn…

Read More
Threat Research

Malicious Word Document Being Distributed in Disguise of a News Survey – ASEC BLOG

November 18, 2022October 13, 2025 Securonix

An ASEC analysis highlights a password-protected Word document disguised as a CNA Singapore interview (filename CNA[Q].doc) used to target North Korea-related information and leak credentials via FTP. The embedded VBA macro auto-executes, creates and runs a VB…

Read More
Threat Research

Ransomware Roundup – Cryptonite | FortiGuard Labs

November 17, 2022October 25, 2025 Securonix

FortiGuard Labs analyzes Cryptonite, an open-source, Python-based ransomware kit that encrypts Windows files and uses NGROK as a reverse proxy for C2. The report details how Cryptonite operates, its encryption method, IoCs, and Fortinet’s protective guidance a…

Read More
Threat Research

THREAT ALERT: Aggressive Qakbot Campaign and the Black Basta Ransomware Group Targeting U.S. Companies

November 16, 2022October 16, 2025 Securonix

Cybereason’s Global SOC is tracking a wide Black Basta ransomware campaign that leverages QakBot (QakBot) to gain entry and move laterally in U.S.-based organizations. The campaign ties QakBot infections to rapid deployment of Black Basta, including DNS disrup…

Read More
Threat Research

Black Friday Alert: 4 Emerging Skimming Attacks to Watch for This Holiday Season

November 16, 2022October 13, 2025 Securonix

Zscaler ThreatLabz documents four under-documented groups carrying out payment card skimming against Magento and PrestaShop e-commerce stores, with activity since mid-2022 and a spike during the holiday season. The campaigns rely on heavily obfuscated JavaScri…

Read More
Threat Research

Fielding Threats: Cyber, Influence, and Physical Threats to the 2022 FIFA World Cup in Qatar | Recorded Future

November 15, 2022October 17, 2025 Securonix

Recorded Future’s Insikt Group analyzes the threat landscape around the 2022 FIFA World Cup in Qatar, covering state-sponsored cyber operations, cybercrime, influence operations, and physical security threats. The assessment finds no imminent disruptive cyber …

Read More
Threat Research

Aurora: a rising stealer flying under the radar

November 15, 2022October 16, 2025 Securonix

Aurora began as a Golang MaaS botnet advertised by Cheshire and Zelizzard, and evolved into an infostealer adopted by multiple traffers, with activity that later slowed and then resurged in different forms. Sekoia.io’s analysis shows multifaceted data collecti…

Read More
Threat Research

Cyble – AXLocker, Octocrypt, And Alice: Leading A New Wave Of Ransomware Campaigns

November 15, 2022October 19, 2025 Securonix

AXLocker, Octocrypt, and Alice ransomware families are analyzed, detailing AXLocker’s file encryption alongside its Discord token theft, and presenting Octocrypt and Alice as RaaS-style offerings with builder tools and wallet-based ransom models. The piece emp…

Read More
Threat Research

Earth Preta Spear-Phishing Governments Worldwide

November 14, 2022October 13, 2025 Securonix

Earth Preta spear-phishing campaigns targeted governments, academia, and research sectors worldwide, distributing TONEINS, TONESHELL, and PUBLOAD through Google Drive links. The activity is attributed to Earth Preta (Mustang Panda/Bronze President), with new i…

Read More
Threat Research

DAGON LOCKER Ransomware Being Distributed – ASEC BLOG

November 9, 2022October 17, 2025 Securonix

DAGON Locker ransomware is being distributed in Korea, often via phishing emails, and operates as a ransomware-as-a-service with variable distribution strategies. It uses a memory-resident 64-bit EXE and employs strong encryption with ChaCha20 and RSA-2048, wh…

Read More
Threat Research

Dtrack expands its operations to Europe and Latin America

November 9, 2022October 14, 2025 Securonix

DTrack is a Lazarus group backdoor used across a wide range of targets, including financial environments, a nuclear power plant, and targeted ransomware campaigns. The analysis highlights a multi-stage deployment with decryption and obfuscation, plus expanding…

Read More
Threat Research

Billbug: State-sponsored Actor Targets Cert Authority, Government Agencies in Multiple Asian Countries

November 9, 2022October 13, 2025 Securonix

Symantec links a state-sponsored activity to Billbug (aka Thrip/Lotus Blossom), targeting a certificate authority and government/defense agencies across Asia since March 2022. The operation employs dual-use tools and backdoors (Hannotog and Sagerunex), uses St…

Read More

Posts pagination

Previous 1 … 510 511 512 … 523 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.