Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: SSO

Threat Research

ApolloRat: Evasive Malware Compiled Using Nuitka – Cyble

June 24, 2022October 13, 2025 Securonix

ApolloRAT is a Python-based Remote Access Trojan that uses Discord as its C&C server. Cyble researchers note that the RAT is compiled with Nuitka to increase evasion and that threat actors are selling it for a low price on Telegram and their site. #ApolloRAT #…

Read More
Threat Research

North Korean State-Sponsored Cyber Actors Use Maui Ransomware to Target the Healthcare and Public Health Sector | CISA

June 22, 2022October 16, 2025 Securonix

This joint Cybersecurity Advisory explains that Maui ransomware has been used by North Korean state-sponsored actors since May 2021 to target Healthcare and Public Health sector organizations, detailing TTPs and IOCs. It urges mitigations and reporting, and wa…

Read More
Threat Research

Rise of LNK (Shortcut files) Malware | McAfee Blog

June 22, 2022October 14, 2025 McAfee

An LNK file is a Windows Shortcut that serves as a pointer to open a file, folder, or application. LNK files are based on the Shell Link binary file format, which holds information used to access another data object. McAfee Labs has seen a rise in malware being delivered using LNK…

Read More
Threat Research

DarkComet RAT Returns with New TTPS – Detection & Response – Security Investigation

June 21, 2022October 16, 2025 Securonix

DarkComet RAT has re-emerged with new TTPS-based detection and response coverage, highlighting its capabilities as a stealthy remote access Trojan that can spy on systems, steal credentials, and add infected machines to a botnet. The article outlines a multi-s…

Read More
Threat Research

Cyble – PennyWise Stealer: An Evasive Infostealer Leveraging YouTube To Infect Users

June 17, 2022October 15, 2025 Securonix

Cyble Research Labs uncovered PennyWise, a new evasive infostealer that targets 30+ Chrome-based and 5+ Mozilla-based browsers as well as crypto wallets, with updated version 1.3.4 already observed in the wild. The malware is distributed via YouTube campaigns …

Read More
Threat Research

Smash-and-grab: AstraLocker 2.0 pushes ransomware direct from Office docs

June 16, 2022October 15, 2025 Securonix

ReversingLabs reports AstraLocker 2.0 is distributed directly from Microsoft Word phishing documents, leveraging leaked Babuk code and a “smash and grab” approach for rapid impact. The campaign uses an old packer, anti-analysis checks, and Monero/BTC wallets f…

Read More
Threat Research

Malspam pushes Matanbuchus malware, leads to Cobalt Strike

June 8, 2022October 15, 2025 Securonix

On 2022-06-16, researchers observed a malspam wave delivering Matanbuchus via a ZIP that contains an HTML page which decodes and downloads payloads, ultimately triggering Cobalt Strike beacons. The operation uses a signed MSI, base64-encoded payloads, and HTTP…

Read More
Threat Research

Raccoon Stealer is Back with a New Version

June 8, 2022October 14, 2025 Securonix

Raccoon Stealer has returned with a new V2 version, resuming activity after a pause linked to a key developer’s death. The update introduces a more automated, faster builder/admin panel, and a Cracked Software distribution approach, with ongoing monitoring adv…

Read More
Threat Research

New IceXLoader 3.0 – Developers Warm Up to Nim | FortiGuard Labs

June 8, 2022October 16, 2025 Securonix

IceXLoader is a Nim-based commercial loader promoted in malware forums to download and deploy additional payloads on Windows machines, with ties to NimzaLoader used by the TrickBot group. The article outlines IceXLoader v3.0’s technical behavior, potential del…

Read More
Threat Research

Malicious HWP Files with BAT Scripts Being Distributed Actively (North Korea/National Defense/Broadcasting) – ASEC BLOG

June 7, 2022October 13, 2025 Securonix

ASEC’s analysis identifies active distribution of malicious HWP files that exploit an OLE object insertion feature to run a batch file, with PowerShell injecting shellcode into a normal process. The campaigns target national defense, North Korea–related materi…

Read More
Threat Research

Cyble – Cerber2021 Ransomware Back In Action

June 7, 2022October 16, 2025 Securonix

Cerber2021 ransomware has resurfaced, delivered via exploitation of patched/unpatched vulnerabilities to target Confluence and Gitlab servers, then encrypts files on Windows and Linux with a Tor-based ransom site. The analysis details file encryption behavior,…

Read More
Threat Research

DriftingCloud: Zero-Day Sophos Firewall Exploitation and an Insidious Breach

June 6, 2022October 16, 2025 Securonix

Volexity details a targeted Sophos Firewall breach that leveraged a zero-day remote code execution vulnerability (CVE-2022-1040) to install a webshell, establish persistence, and conduct MITM activity that extended to external systems such as CMS websites. Sop…

Read More
Threat Research

Iranian Spear-Phishing Operation Targets Former Israeli and US High-Ranking Officials – Check Point Research

June 3, 2022October 15, 2025 Securonix

Two sentences summarizing: Check Point Research exposes an Iranian-backed spear-phishing operation targeting former Israeli officials and other high-ranking figures, leveraging a custom phishing infrastructure and inbox takeovers to steal credentials and ident…

Read More
Threat Research

Crypto-Miners Leveraging Atlassian Zero-Day Vulnerability – Check Point Blog

May 31, 2022October 18, 2025 Securonix

Two security researchers describe how crypto-mining operations leveraged Atlassian Confluence zero-day CVE-2022-26134 to drop and execute mining payloads on Linux and Windows hosts, using a multi-stage chain from initial exploitation to persistence and lateral…

Read More
Threat Research

Exposing HelloXD Ransomware and x4k

May 30, 2022October 16, 2025 Securonix

HelloXD is a ransomware family performing double extortion on Windows and Linux, with negotiations conducted via TOX chat and onion-based services instead of a leak site. Unit 42’s analysis links HelloXD to x4k and reveals details on its packers, memory-based …

Read More

Posts pagination

Previous 1 … 517 518 519 … 523 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.