China-Linked APTs Exploit SAP CVE-2025-31324 to Breach 581 Critical Systems Worldwide

A critical security vulnerability in SAP NetWeaver, CVE-2025-31324, is being actively exploited by Chinese threat actors to compromise and maintain persistent access to critical infrastructure systems worldwide. These attackers are leveraging web shells and malware to target networks in various sectors, including energy, water, healthcare, and government. Affected: SAP NetWeaver systems,…

Read More
North Korean Konni APT Targets Ukraine with Malware to track Russian Invasion Progress

The North Korea-linked threat actor Konni APT has launched a phishing campaign targeting Ukrainian government entities to gather strategic intelligence on the Russian invasion. This activity indicates that Konni’s targeting extends beyond Russia, focusing on political and military intelligence collection. Affected: Ukrainian government entities, Ukrainian military, goverment organizations in Ukraine…

Read More
Suspected DoppelPaymer Ransomware Group Member Arrested

Moldovan authorities, with support from Dutch law enforcement, arrested a suspect linked to DoppelPaymer ransomware attacks targeting organizations in the Netherlands, including a major scientific institution. The operation involved searches, seizure of electronic devices, and the suspect remains in custody awaiting extradition. Affected: Dutch Research Council (NWO), organizations in the Netherlands…

Read More
Chihuahua Stealer Uncovered: A Stealthy .NET Infostealer Targeting Browsers and Crypto Wallets

Chihuahua Stealer is a newly discovered .NET-based infostealer that employs multi-stage payloads, scheduled task persistence, and advanced encryption to steal browser and crypto wallet data stealthily. It uses obfuscated PowerShell scripts for delivery and exfiltrates encrypted data over HTTPS, impacting targeted user systems and network environments. #ChihuahuaStealer #UserSystems

Read More
Chihuahua Stealer Uncovered: A Stealthy .NET Infostealer Targeting Browsers and Crypto Wallets

Chihuahua Stealer is a newly identified .NET-based infostealer that employs multi-stage payloads, scheduled task persistence, and advanced encryption techniques to steal browser and crypto wallet data. It leverages obfuscated PowerShell scripts distributed via malicious Google Drive documents to maintain stealth and exfiltrate encrypted stolen data over HTTPS. #ChihuahuaStealer #PowerShell

Read More
North Korean APT37’s “ToyBox Story”: Stealthy Attacks Unveiled

The Genians Security Center (GSC) has uncovered the recent “Operation: ToyBox Story” campaign by North Korean-linked APT37, involving sophisticated spear-phishing attacks using trusted cloud services. The campaign primarily delivered the RoKRAT remote access trojan through fileless malware techniques, targeting South Korean and other regional organizations. Affected: South Korean think tanks, government…

Read More
Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AI-Powered Scams

Cybercriminals are increasingly targeting overlooked infrastructure such as outdated software, IoT devices, and open-source packages to launch attacks at scale. Threat actors are shifting their focus from high-value targets to vulnerable “infrastructure” components, reshaping intrusion, persistence, and evasion strategies. Affected: Organizations relying on outdated systems, IoT device users, open-source software ecosystems….

Read More