CYBER ATTACK

Hackers Weaponizing 7-Zip Downloads to Turn Your Home Computers into Proxy Nodes

Hackers Weaponizing 7-Zip Downloads to Turn Your Home Computers into Proxy Nodes

CYBER ATTACKZerowl

A fraudulent campaign that uses a fake version of the popular 7-Zip file archiving program to covertly turn home computers into residential proxy nodes.

A Critical Gogs Vulnerability Allows 2FA Bypass and Remote Command Execution

A Critical Gogs Vulnerability Allows 2FA Bypass and Remote Command Execution

CYBER ATTACKZerowl

Attackers can execute commands remotely and circumvent two-factor authentication thanks to a serious vulnerability in Gogs, a lightweight self-hosted Git.

TeamPCP Industrializes Cloud Misconfigurations Into a Self-Propagating Cybercrime Platform

TeamPCP Industrializes Cloud Misconfigurations Into a Self-Propagating Cybercrime Platform

CYBER ATTACKZerowl

In December 2025, TeamPCP—also referred to as PCPcat, ShellForce, and DeadCatx3—emerged as a highly skilled cloud-native threat actor that targeted.

ILOVEPOOP Toolkit Exploiting React2Shell Vulnerability to Deploy Malicious Payload

ILOVEPOOP Toolkit Exploiting React2Shell Vulnerability to Deploy Malicious Payload

CYBER ATTACKZerowl

The unexpected emergence of "React2Shell" (CVE-2025-55182), a serious flaw affecting Next.js and React Server Components, has had an effect on the.

The APT36 hacker group uses new tools to disrupt services by attacking Linux systems.

The APT36 hacker group uses new tools to disrupt services by attacking Linux systems.

CYBER ATTACKZerowl

Indian defense and government agencies have been functioning under a persistent digital shadow for over ten years This article explores ongoing defenses.

Windows Error Reporting Service Vulnerability Let Attackers Elevate Privileges – PoC Released

Windows Error Reporting Service Vulnerability Let Attackers Elevate Privileges – PoC Released

CYBER ATTACKZerowl

Vulnerability in Windows Error Reporting It was found that there is a serious security vulnerability in Windows Error Reporting Service that enables.

VoidLink Linux C2 Highlights LLM-Generated Malware with Multi-Cloud and Kernel-Level Stealth

VoidLink Linux C2 Highlights LLM-Generated Malware with Multi-Cloud and Kernel-Level Stealth

CYBER ATTACKZerowl

A worrying example of AI-assisted threat development is the complex Linux malware framework VoidLink, which combines kernel-level stealth mechanisms with.

Socelars Malware Attacking Windows systems to Collect sensitive data

Socelars Malware Attacking Windows systems to Collect sensitive data

CYBER ATTACKZerowl

Socelars, a cunning Trojan that steals information from Windows users, is being monitored by security researchers This article explores malware trends.

Crypto Scanner – New Tool to Find Quantum-Vulnerable Cryptography in your Codebase

Crypto Scanner – New Tool to Find Quantum-Vulnerable Cryptography in your Codebase

CYBER ATTACKZerowl

Discover Quantum Vulnerable Cryptography with a Crypto Scanner Tool A new open-source tool has surfaced to assist developers in protecting their data from.

Attackers Use Windows Shortcut Files as Weapons to Spread Worldwide Group Ransomware

Attackers Use Windows Shortcut Files as Weapons to Spread Worldwide Group Ransomware

CYBER ATTACKZerowl

The Phorpiex botnet, an established malware-as-a-service platform that has been operational for more than ten years, is making a comeback in the realm of.

Malicious LNK Files Used to Deploy Global Group Ransomware Worldwide

Malicious LNK Files Used to Deploy Global Group Ransomware Worldwide

CYBER ATTACKZerowl

Researchers studying cybersecurity have discovered a massive Phorpiex campaign that is affecting email accounts all over the world This article explores.

GuLoader Evades Detection Using Polymorphic Code and Trusted Cloud Hosting

GuLoader Evades Detection Using Polymorphic Code and Trusted Cloud Hosting

CYBER ATTACKZerowl

Since 2019, GuLoader malware has been a major downloader of RATs and stealers, continuing to afflict systems. Its extensive use of shape-shifting code and.

Fancy Bear Hackers Abuse Microsoft Zero-Day in Email Theft Campaign

Fancy Bear Hackers Abuse Microsoft Zero-Day in Email Theft Campaign

CYBER ATTACKZerowl

Fancy Bear, a group of hackers with ties to Russia, has launched Operation Neusploit, a cunning cyberattack This article explores vulnerability microsoft.

Bloody Wolf Hackers Deploy NetSupport RAT In Targeted Attacks

Bloody Wolf Hackers Deploy NetSupport RAT In Targeted Attacks

CYBER ATTACKZerowl

Bloody Wolf hackers, who use custom Java loaders to target the manufacturing, finance, and IT sectors, have launched spear-phishing attacks against.

30-Year-Old Vulnerability of Libpng Puts Millions of Systems at Risk of Code Execution Attacks

30-Year-Old Vulnerability of Libpng Puts Millions of Systems at Risk of Code Execution Attacks

CYBER ATTACKZerowl

A Vulnerability in libpng Exposes Millions of Apps A serious flaw has been discovered in libpng, the official PNG reference library that is utilized by.

Threat Actor Claims Leak of Cybercrime-Focused AI Platform WormGPT Database

Threat Actor Claims Leak of Cybercrime-Focused AI Platform WormGPT Database

CYBER ATTACKZerowl

Leak in the WormGPT Database The entire WormGPT database, a well-known artificial intelligence platform with a focus on cybercrime that has been offered.

Microsoft Teams New Option Enables Users to Flag Malicious Messages

Microsoft Teams New Option Enables Users to Flag Malicious Messages

CYBER ATTACKZerowl

Flag for Teams' Malicious Messages By enabling Defender for Office 365 Plan 1 users to directly report suspicious messages, Microsoft is greatly enhancing.

GuLoader Uses Polymorphic Code and Trusted Cloud Hosting to Evade Reputation-Based Defenses

GuLoader Uses Polymorphic Code and Trusted Cloud Hosting to Evade Reputation-Based Defenses

CYBER ATTACKZerowl

Since its inception, GuLoader, also referred to as CloudEyE, has cemented its status as a recurring threat in the cybersecurity environment. It is.

Microsoft Exchange Online Erroneously Flags Legitimate Emails as Phishing

Microsoft Exchange Online Erroneously Flags Legitimate Emails as Phishing

CYBER ATTACKZerowl

Legitimate business emails are being mistakenly classified as phishing attempts due to a significant bug affecting Microsoft Exchange Online This article.

Hackers Actively Exploiting Ivanti EPMM Devices to Deploy Dormant Backdoors

Hackers Actively Exploiting Ivanti EPMM Devices to Deploy Dormant Backdoors

CYBER ATTACKZerowl

Beginning February 4, 2026, Ivanti Endpoint Manager Mobile (EPMM) systems were the target of a cunning cyberattack This article explores jsp safety. . Two.

DPRK IT Workers Impersonate Professionals On LinkedIn To Secure Remote Jobs

DPRK IT Workers Impersonate Professionals On LinkedIn To Secure Remote Jobs

CYBER ATTACKZerowl

Global talent has benefited from remote work, but there are risks involved as well This article explores suspicious hires linkedin. . On LinkedIn, North.

Bloody Wolf Hackers Attacking Organizations to Deploy NetSupport RAT and Gain Remote Access

Bloody Wolf Hackers Attacking Organizations to Deploy NetSupport RAT and Gain Remote Access

CYBER ATTACKZerowl

A sophisticated wave of targeted attacks against organizations throughout Russia and Uzbekistan has been launched by the cybercriminal group Stan Ghouls.

Augustus – Open-source LLM Vulnerability Scanner With 210+ Attacks Across 28 LLM Providers

Augustus – Open-source LLM Vulnerability Scanner With 210+ Attacks Across 28 LLM Providers

CYBER ATTACKZerowl

Augustus LLM Vulnerability Scanner Augustus is a brand-new, open-source vulnerability scanner made to protect Large Language Models (LLMs) from a.

A data breach in an AI chat app exposes 300 million messages from 25 million Users

A data breach in an AI chat app exposes 300 million messages from 25 million Users

CYBER ATTACKZerowl

The well-known smartphone app "Chat & Ask AI" made a serious privacy mistake by disclosing 300 million private messages from 25 million users. This app.

Transparent Tribe Targets India’s Startup Ecosystem In Renewed Cyber Espionage Campaign

Transparent Tribe Targets India’s Startup Ecosystem In Renewed Cyber Espionage Campaign

CYBER ATTACKZerowl

APT36, a cyber espionage group with ties to Pakistan, Transparent Tribe, has increased the scope of its attacks to include cybersecurity companies and.

Cybercriminals Leverage Reputable ISP Networks via Bulletproof Hosting Services

Cybercriminals Leverage Reputable ISP Networks via Bulletproof Hosting Services

CYBER ATTACKZerowl

Attackers were discovered on virtual machines (VMs) with hostnames derived from ISPsystems, such as WIN-J9D866ESIJ2 and WIN-LIVFRVQFMKO, by SophosLabs'.

Claude Desktop Extensions Zero-Click RCE Flaw Exposes Over 10,000 Users to Silent Attacks

Claude Desktop Extensions Zero-Click RCE Flaw Exposes Over 10,000 Users to Silent Attacks

CYBER ATTACKZerowl

By simply sending a Google Calendar invite, an attacker can take control of computers thanks to a startling zero-click vulnerability in Claude Desktop.

Chinese hackers are targeting Singapores telecom industry in an attempt to compromise edge devices.

Chinese hackers are targeting Singapores telecom industry in an attempt to compromise edge devices.

CYBER ATTACKZerowl

Recently, the Advanced Persistent Threat (APT) group UNC3886 launched a highly advanced cyber espionage campaign against Singapore's telecommunications.

FvncBot Malware Leverages Android Accessibility Features To Attack Users

FvncBot Malware Leverages Android Accessibility Features To Attack Users

CYBER ATTACKZerowl

FvncBot, a new malware variant, has been found to target Android users, particularly Polish mobile banking customers This article explores fvncbot new.

Top 5 this week

Page 31 of 44