CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
BlackTech APT Deploys BlueShell Linux Backdoor Against Japanese Organizations

BlackTech APT Deploys BlueShell Linux Backdoor Against Japanese Organizations

CYBER ATTACKZerowl

BlackTech has been linked to a newly discovered Linux backdoor deployment targeting organizations in Japan, highlighting how an old tool can be repurposed.

Autonomous AI Agent Accidentally Exposes Hacker’s Entire Attack Infrastructure

Autonomous AI Agent Accidentally Exposes Hacker’s Entire Attack Infrastructure

CYBER ATTACKZerowl

A Chinese-speaking hacker has been identified using an AI-powered hacking tool that inadvertently exposed its full infrastructure, offering a rare glimpse.

Attackers Can Exploit SolarWinds Web Help Desk Flaw to Trigger Memory-Based DoS

Attackers Can Exploit SolarWinds Web Help Desk Flaw to Trigger Memory-Based DoS

CYBER ATTACKZerowl

SolarWinds has patched a high-severity denial-of-service vulnerability in its Web Help Desk (WHD) platform, allowing attackers to exhaust server memory.

Astaroth Malware Turns Your WhatsApp Account Into a Malware-Spreading Machine

Astaroth Malware Turns Your WhatsApp Account Into a Malware-Spreading Machine

CYBER ATTACKZerowl

Astaroth has introduced a novel method for malware propagation, transforming a victim’s WhatsApp Web session into an effective delivery channel for the.

Apple iOS 26.6 Fixes Kernel Code Execution, Sandbox Escape, and WebKit Flaws

Apple iOS 26.6 Fixes Kernel Code Execution, Sandbox Escape, and WebKit Flaws

CYBER ATTACKZerowl

Apple introduced iOS 26.6 and iPadOS 26.6 on July 27, 2026, addressing a significant number of security vulnerabilities across kernel memory corruption.

Analog Devices Confirms Cyberattack After Hackers Exfiltrate Files From Company Systems

Analog Devices Confirms Cyberattack After Hackers Exfiltrate Files From Company Systems

CYBER ATTACKZerowl

Analog Devices, Inc., a Massachusetts-based semiconductor giant, disclosed in a Form 8-K filing that unauthorized access was detected on its corporate.

AI Helps Discover Linux Kernel Zero-Day Enabling Root Privilege Escalation

AI Helps Discover Linux Kernel Zero-Day Enabling Root Privilege Escalation

CYBER ATTACKZerowl

A newly disclosed zero-day vulnerability in the Linux kernel, tracked as CVE-2026-53264, enables local privilege escalation to root through the net/sched.

AI-Generated Phishing No Longer Needs Malware: It Can Steal Your Session Inside the Browser

AI-Generated Phishing No Longer Needs Malware: It Can Steal Your Session Inside the Browser

CYBER ATTACKZerowl

AI-generated phishing campaigns are rapidly advancing beyond traditional malware delivery, moving the battleground directly into web browsers where.

Administrators Urged to Disable Root SSH Login and Block Weak Password Attacks

Administrators Urged to Disable Root SSH Login and Block Weak Password Attacks

CYBER ATTACKZerowl

Administrators are being advised to enhance SSH configurations after recent evidence suggests a stealthy reconnaissance campaign targeting compromised.

China-Nexus JadeProx Uses New TriBack Loader to Target Governments, Hospitals, and Universities

China-Nexus JadeProx Uses New TriBack Loader to Target Governments, Hospitals, and Universities

CYBER ATTACKZerowl

JadeProx TriBack Campaign An exposed directory on an operator-controlled Alibaba Cloud server revealed the inner workings of the JadeProx intrusion set.

AtlasRAT Hides Command Traffic Behind TLS and ChaCha20 Encryption

AtlasRAT Hides Command Traffic Behind TLS and ChaCha20 Encryption

CYBER ATTACKZerowl

AtlasRAT is a newly documented Windows remote access trojan (RAT) that uses a multi‑stage loader chain and strong encryption to hide its.

Ransomware Groups Increasingly Turn to EDR Killers Outside Vulnerable Driver Tactics

Ransomware Groups Increasingly Turn to EDR Killers Outside Vulnerable Driver Tactics

CYBER ATTACKZerowl

Ransomware makers are noisy by nature because they have to quickly change a lot of files while they encrypt them This article explores ransomware makers.

ProSpy Spyware Spread Through Fake Messaging Apps In Middle East Campaign

ProSpy Spyware Spread Through Fake Messaging Apps In Middle East Campaign

CYBER ATTACKZerowl

Cybersecurity experts have found a big spying operation in the Middle East that is going after journalists, politicians, and members of civil society This.

Malicious OpenVSX Extension Delivers GlassWorm To VS Code, Cursor, and Windsurf Users

Malicious OpenVSX Extension Delivers GlassWorm To VS Code, Cursor, and Windsurf Users

CYBER ATTACKZerowl

The GlassWorm hackers have gotten even better at what they do This article explores glassworm hackers gotten. . This attack is aimed at people who use.

Gmail with end-to-end encryption is now available on Android and iPhone.

Gmail with end-to-end encryption is now available on Android and iPhone.

CYBER ATTACKZerowl

Google has added mobile devices to Gmail's end-to-end encryption (E2EE) features This article explores devices gmail. . With client-side encryption (CSE).

Top Node.js Maintainers Targeted in Sophisticated Social Engineering Scheme

Top Node.js Maintainers Targeted in Sophisticated Social Engineering Scheme

CYBER ATTACKZerowl

A complicated social engineering campaign is going after important open-source developers in the Node.js community. Security experts think that this is.

Threat Actors Abuse Claude Code Leak In GitHub Malware Campaign

Threat Actors Abuse Claude Code Leak In GitHub Malware Campaign

CYBER ATTACKZerowl

On March 31, a source code leak happened that revealed 59.8 MB of TypeScript source map and 512K lines of code. There was then a window of time between the.

North Korean Hackers Compromise Widely Used Axios Package to Infect Windows, macOS, and Linux Systems

North Korean Hackers Compromise Widely Used Axios Package to Infect Windows, macOS, and Linux Systems

CYBER ATTACKZerowl

A big attack on the JavaScript ecosystem's software supply chain has happened because a bad dependency was added to the axios NPM package, which is used.

HPE Aruba Private 5G Platform Vulnerability Enables Credential Theft Attacks

HPE Aruba Private 5G Platform Vulnerability Enables Credential Theft Attacks

CYBER ATTACKZerowl

Hewlett-Packard Enterprise has found a security hole in its Aruba Networking Private 5G Core On-Prem platform This article explores hpesbnw05032 security.

Hackers Use Fake BTS World Tour Ticket Sites to Scam Fans Across Multiple Countries

Hackers Use Fake BTS World Tour Ticket Sites to Scam Fans Across Multiple Countries

CYBER ATTACKZerowl

Discover how Cybercriminals are taking advantage of the buzz around BTS's long-awaited return to the world stage. The scam has already reached nine.

Hackers Impersonate Secure Messaging Apps to Deploy ProSpy in Middle East Espionage Attacks

Hackers Impersonate Secure Messaging Apps to Deploy ProSpy in Middle East Espionage Attacks

CYBER ATTACKZerowl

Since at least 2022, a targeted mobile spying campaign has been going on in the Middle East without anyone knowing This article explores indian government.

Hackers Exploit GitHub Copilot Vulnerability to Exfiltrate Sensitive Data

Hackers Exploit GitHub Copilot Vulnerability to Exfiltrate Sensitive Data

CYBER ATTACKZerowl

Hackers could secretly steal sensitive data from private repositories because of a serious flaw in GitHub Copilot Chat This article explores exploit.

Hackers Abuse GitHub and GitLab to Host Malware and Credential Phishing Campaigns

Hackers Abuse GitHub and GitLab to Host Malware and Credential Phishing Campaigns

CYBER ATTACKZerowl

GitHub and GitLab are very important for making software these days This article explores trusted github gitlab. . A lot of security tools don't block.

Censys Warns 5,219 Rockwell/Allen-Bradley PLCs Are Exposed Amid Iranian APT Activity

Censys Warns 5,219 Rockwell/Allen-Bradley PLCs Are Exposed Amid Iranian APT Activity

CYBER ATTACKZerowl

Iranian-backed advanced persistent threat (APT) actors are actively going after Rockwell Automation/Allen-Bradley programmable logic controllers (PLCs).

AI Router Flaws Let Hackers Put Bad Code on Your Computer and Steal Your Private Information

AI Router Flaws Let Hackers Put Bad Code on Your Computer and Steal Your Private Information

CYBER ATTACKZerowl

Hackers can use third-party API routers to take over tool calls, steal cryptocurrency wallets, and steal sensitive credentials on a large scale This.

Trojanized PyPI AI Proxy Steals Data With Stolen Claude Prompt

Trojanized PyPI AI Proxy Steals Data With Stolen Claude Prompt

CYBER ATTACKZerowl

The JFrog security research team has found a complex and harmful PyPI package called Hermes-px. It is sold as a "Secure AI Inference Proxy" that sends.

Threat Actors Weaponize Browser-Based Zoom and Teams Lures

Threat Actors Weaponize Browser-Based Zoom and Teams Lures

CYBER ATTACKZerowl

The Security Alliance stopped 164 internet domains that were linked to a North Korean hacking group known as UNC1069 This article explores attacks web.

Threat Actors Deploy New BPFDoor Variants With Stealthier C2 Tactics

Threat Actors Deploy New BPFDoor Variants With Stealthier C2 Tactics

CYBER ATTACKZerowl

Seven new types of BPFDoor malware have been found This article explores types bpfdoor malware. . The malware is a backdoor at the kernel level that stops.

Top 5 this week

Page 17 of 61