CYBER ATTACK

Ransomware Groups Increasingly Turn to EDR Killers Outside Vulnerable Driver Tactics

Ransomware Groups Increasingly Turn to EDR Killers Outside Vulnerable Driver Tactics

CYBER ATTACKZerowl

Ransomware makers are noisy by nature because they have to quickly change a lot of files while they encrypt them This article explores ransomware makers.

ProSpy Spyware Spread Through Fake Messaging Apps In Middle East Campaign

ProSpy Spyware Spread Through Fake Messaging Apps In Middle East Campaign

CYBER ATTACKZerowl

Cybersecurity experts have found a big spying operation in the Middle East that is going after journalists, politicians, and members of civil society This.

Malicious OpenVSX Extension Delivers GlassWorm To VS Code, Cursor, and Windsurf Users

Malicious OpenVSX Extension Delivers GlassWorm To VS Code, Cursor, and Windsurf Users

CYBER ATTACKZerowl

The GlassWorm hackers have gotten even better at what they do This article explores glassworm hackers gotten. . This attack is aimed at people who use.

Gmail with end-to-end encryption is now available on Android and iPhone.

Gmail with end-to-end encryption is now available on Android and iPhone.

CYBER ATTACKZerowl

Google has added mobile devices to Gmail's end-to-end encryption (E2EE) features This article explores devices gmail. . With client-side encryption (CSE).

Top Node.js Maintainers Targeted in Sophisticated Social Engineering Scheme

Top Node.js Maintainers Targeted in Sophisticated Social Engineering Scheme

CYBER ATTACKZerowl

A complicated social engineering campaign is going after important open-source developers in the Node.js community. Security experts think that this is.

Threat Actors Abuse Claude Code Leak In GitHub Malware Campaign

Threat Actors Abuse Claude Code Leak In GitHub Malware Campaign

CYBER ATTACKZerowl

On March 31, a source code leak happened that revealed 59.8 MB of TypeScript source map and 512K lines of code. There was then a window of time between the.

North Korean Hackers Compromise Widely Used Axios Package to Infect Windows, macOS, and Linux Systems

North Korean Hackers Compromise Widely Used Axios Package to Infect Windows, macOS, and Linux Systems

CYBER ATTACKZerowl

A big attack on the JavaScript ecosystem's software supply chain has happened because a bad dependency was added to the axios NPM package, which is used.

HPE Aruba Private 5G Platform Vulnerability Enables Credential Theft Attacks

HPE Aruba Private 5G Platform Vulnerability Enables Credential Theft Attacks

CYBER ATTACKZerowl

Hewlett-Packard Enterprise has found a security hole in its Aruba Networking Private 5G Core On-Prem platform This article explores hpesbnw05032 security.

Hackers Use Fake BTS World Tour Ticket Sites to Scam Fans Across Multiple Countries

Hackers Use Fake BTS World Tour Ticket Sites to Scam Fans Across Multiple Countries

CYBER ATTACKZerowl

Discover how Cybercriminals are taking advantage of the buzz around BTS's long-awaited return to the world stage. The scam has already reached nine.

Hackers Impersonate Secure Messaging Apps to Deploy ProSpy in Middle East Espionage Attacks

Hackers Impersonate Secure Messaging Apps to Deploy ProSpy in Middle East Espionage Attacks

CYBER ATTACKZerowl

Since at least 2022, a targeted mobile spying campaign has been going on in the Middle East without anyone knowing This article explores indian government.

Hackers Exploit GitHub Copilot Vulnerability to Exfiltrate Sensitive Data

Hackers Exploit GitHub Copilot Vulnerability to Exfiltrate Sensitive Data

CYBER ATTACKZerowl

Hackers could secretly steal sensitive data from private repositories because of a serious flaw in GitHub Copilot Chat This article explores exploit.

Hackers Abuse GitHub and GitLab to Host Malware and Credential Phishing Campaigns

Hackers Abuse GitHub and GitLab to Host Malware and Credential Phishing Campaigns

CYBER ATTACKZerowl

GitHub and GitLab are very important for making software these days This article explores trusted github gitlab. . A lot of security tools don't block.

Censys Warns 5,219 Rockwell/Allen-Bradley PLCs Are Exposed Amid Iranian APT Activity

Censys Warns 5,219 Rockwell/Allen-Bradley PLCs Are Exposed Amid Iranian APT Activity

CYBER ATTACKZerowl

Iranian-backed advanced persistent threat (APT) actors are actively going after Rockwell Automation/Allen-Bradley programmable logic controllers (PLCs).

AI Router Flaws Let Hackers Put Bad Code on Your Computer and Steal Your Private Information

AI Router Flaws Let Hackers Put Bad Code on Your Computer and Steal Your Private Information

CYBER ATTACKZerowl

Hackers can use third-party API routers to take over tool calls, steal cryptocurrency wallets, and steal sensitive credentials on a large scale This.

Trojanized PyPI AI Proxy Steals Data With Stolen Claude Prompt

Trojanized PyPI AI Proxy Steals Data With Stolen Claude Prompt

CYBER ATTACKZerowl

The JFrog security research team has found a complex and harmful PyPI package called Hermes-px. It is sold as a "Secure AI Inference Proxy" that sends.

Threat Actors Weaponize Browser-Based Zoom and Teams Lures

Threat Actors Weaponize Browser-Based Zoom and Teams Lures

CYBER ATTACKZerowl

The Security Alliance stopped 164 internet domains that were linked to a North Korean hacking group known as UNC1069 This article explores attacks web.

Threat Actors Deploy New BPFDoor Variants With Stealthier C2 Tactics

Threat Actors Deploy New BPFDoor Variants With Stealthier C2 Tactics

CYBER ATTACKZerowl

Seven new types of BPFDoor malware have been found This article explores types bpfdoor malware. . The malware is a backdoor at the kernel level that stops.

North Korean IT Worker Unmasked After Refusing to Insult Kim Jong Un in Job Interview

North Korean IT Worker Unmasked After Refusing to Insult Kim Jong Un in Job Interview

CYBER ATTACKZerowl

A viral video shows a new and surprisingly easy way to find North Korean state-sponsored IT workers trying to get into Western companies. The video shows.

New GitHub Actions Attack Chain Uses Fake CI Updates to Exfiltrate Secrets and Tokens

New GitHub Actions Attack Chain Uses Fake CI Updates to Exfiltrate Secrets and Tokens

CYBER ATTACKZerowl

A new attack campaign is actively going after open-source repositories on GitHub by hiding harmful code in normal CI build configurations This article.

METATRON – Open-Source AI Penetration Testing Assistant Brings Local LLM Analysis to Linux

METATRON – Open-Source AI Penetration Testing Assistant Brings Local LLM Analysis to Linux

CYBER ATTACKZerowl

Written in Python 3, METATRON is an open-source framework for penetration testing This article explores metatron open source. . It combines automated.

Indian Bank Warns Users of Fake LPG Payment and KYC Update Scams to Steal Banking Info

Indian Bank Warns Users of Fake LPG Payment and KYC Update Scams to Steal Banking Info

CYBER ATTACKZerowl

Discover how Cybercriminals are taking advantage of people's growing worries about the availability of LPG cylinders by sending out false messages on SMS.

Hackers Use Poisoned Axios Package and Phantom Dependency to Spread Cross-Platform Malware

Hackers Use Poisoned Axios Package and Phantom Dependency to Spread Cross-Platform Malware

CYBER ATTACKZerowl

On March 30, 2026, a big JavaScript library was turned into a weapon This article explores attackers poison axios. . Attackers put poison in Axios' npm.

Hackers Drain $286 Million From Drift Protocol in Suspected North Korea-Linked Exploit

Hackers Drain $286 Million From Drift Protocol in Suspected North Korea-Linked Exploit

CYBER ATTACKZerowl

On April 1, 2026, a huge theft happened on the largest decentralized perpetual futures exchange on the Solana blockchain This article explores korea.

Hackers Compromised ILSpy WordPress Domain to Deliver Malware

Hackers Compromised ILSpy WordPress Domain to Deliver Malware

CYBER ATTACKZerowl

After threat actors used the ILSpy WordPress domain on April 6, 2026, a new supply chain attack went after developers. Instead of giving visitors real.

Hackers Breach ILSpy WordPress Domain to Distribute Malware

Hackers Breach ILSpy WordPress Domain to Distribute Malware

CYBER ATTACKZerowl

A targeted attack on the official WordPress site for ILSpy, a popular open-source .NET decompiler used by developers, has made it possible for malware to.

Google’s Bug Bounty Program Hits All-Time High With $17 Million in 2025 Payouts

Google’s Bug Bounty Program Hits All-Time High With $17 Million in 2025 Payouts

CYBER ATTACKZerowl

Discover how In 2025, Google broke previous payout records for the Vulnerability Reward Program (VRP) on its 15th anniversary. The tech giant gave $17.

Google Brings Lazy Loading to Video and Audio in Chrome Update

Google Brings Lazy Loading to Video and Audio in Chrome Update

CYBER ATTACKZerowl

Google is making a big change to its Chrome browser that will improve how well audio and video elements load slowly by default This article explores.

GitHub-Hosted Malware Delivered Through LNK Files In South Korea Attack Wave

GitHub-Hosted Malware Delivered Through LNK Files In South Korea Attack Wave

CYBER ATTACKZerowl

Discover how A complex phishing campaign is going after businesses in South Korea. It uses bad Windows shortcut (LNK) files and GitHub as a secret Command.

Top 5 this week

Page 1 of 44