CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
SURXRAT Malware Gives Hackers Complete Access To Android Devices

SURXRAT Malware Gives Hackers Complete Access To Android Devices

CYBER ATTACKZerowl

SURXRAT is a sophisticated Android Remote Access Trojan (RAT) that is marketed via a malware-as-a-service (MaaS) business model This article explores.

SolarWinds Serv-U Critical Vulnerabilities Allow Attackers to Gain Root Access

SolarWinds Serv-U Critical Vulnerabilities Allow Attackers to Gain Root Access

CYBER ATTACKZerowl

On February 24, 2026, SolarWinds released Serv-U version 15.5.4, which fixes four serious flaws that could give hackers root access to compromised systems.

Multiple Vulnerabilities in CPSD CryptoPro Secure Disk for BitLocker Allow Root Access and Credential Theft

Multiple Vulnerabilities in CPSD CryptoPro Secure Disk for BitLocker Allow Root Access and Credential Theft

CYBER ATTACKZerowl

CPSD CryptoPro Secure Disk for BitLocker Vulnerabilities Numerous flaws have been found in the popular encryption program CryptoPro Secure Disk (CPSD) for.

Microsoft Warns of Hackers Attacking Developers with Malicious Next.js Repositories

Microsoft Warns of Hackers Attacking Developers with Malicious Next.js Repositories

CYBER ATTACKZerowl

Software developers are being actively targeted by a coordinated attack campaign using malicious repositories that pose as authentic Next.js projects and.

Microsoft to Stop Support for Windows Server 2016 and Windows 10 2016

Microsoft to Stop Support for Windows Server 2016 and Windows 10 2016

CYBER ATTACKZerowl

Microsoft Ends Support for Windows Server 2016 and Windows 10 2016 Three Windows releases that were first released in 2016 are approaching end-of-support.

Microsoft Released Updates for Windows 11, Version 25H2 and 24H2 Systems

Microsoft Released Updates for Windows 11, Version 25H2 and 24H2 Systems

CYBER ATTACKZerowl

Discover how Updates from Microsoft Windows 11 25H2 and 24H2 For Windows 11 versions 25H2 and 24H2, KB5077241, an optional non-security update, has been.

Hackers Use ChatGPT In OAuth Attacks To Breach Entra ID and Access Emails

Hackers Use ChatGPT In OAuth Attacks To Breach Entra ID and Access Emails

CYBER ATTACKZerowl

OAuth-based application attacks are becoming more common, according to Red Canary's Threat Research team This article explores risk oauth attacks. . One.

CISA Warns of Active Exploitation of FileZen Vulnerability

CISA Warns of Active Exploitation of FileZen Vulnerability

CYBER ATTACKZerowl

A serious flaw in Soliton Systems' FileZen software has been added to the U.S This article explores risks filezen secure. . Cybersecurity and.

LockBit Ransomware Is Deployed via RDP Access Using an Apache ActiveMQ Vulnerability

LockBit Ransomware Is Deployed via RDP Access Using an Apache ActiveMQ Vulnerability

CYBER ATTACKZerowl

Threat actors recently gained initial access to an organization's network by taking advantage of a vulnerability (CVE-2023-46604) in an Apache ActiveMQ.

ZeroDayRAT Malware Targets Android and iOS, Stealing Sensitive Data From Millions

ZeroDayRAT Malware Targets Android and iOS, Stealing Sensitive Data From Millions

CYBER ATTACKZerowl

Discover how The landscape of malware-as-a-service (MaaS) keeps pushing the limits of cybercrime. Researchers at Cyberthint have examined a new mobile.

U.S. Slaps Sanctions on Exploit Brokers Linked to Theft of Government Hacking Tools

U.S. Slaps Sanctions on Exploit Brokers Linked to Theft of Government Hacking Tools

CYBER ATTACKZerowl

A shadowy network of exploit brokers trafficking stolen U.S. government cyber tools has been the target of a significant crackdown by the US Department of.

OpenClaw Malware Tricks Users Into AMOS Infection via Password Entry

OpenClaw Malware Tricks Users Into AMOS Infection via Password Entry

CYBER ATTACKZerowl

TrendAITM has discovered a troubling change in the distribution of the Atomic Stealer (AMOS) malware in recent cybersecurity research This article.

NuGet Package Exploit Steals Login Credentials From ASP.NET Developers

NuGet Package Exploit Steals Login Credentials From ASP.NET Developers

CYBER ATTACKZerowl

A sophisticated supply chain attack that targets ASP.NET developers was recently discovered by Socket's Threat Research Team This article explores.

GitHub Copilot Exploited to Perform Full Repository Takeover via Passive Prompt Injection

GitHub Copilot Exploited to Perform Full Repository Takeover via Passive Prompt Injection

CYBER ATTACKZerowl

Copilot on GitHub Was Exploited RoguePilot, a serious AI-driven flaw in GitHub Codespaces, allowed hackers to covertly take over a repository by inserting.

Threat Actors Weaponized AI Tools to Gain Full Domain Access within 30 Minutes

Threat Actors Weaponized AI Tools to Gain Full Domain Access within 30 Minutes

CYBER ATTACKZerowl

Threat actors transformed popular artificial intelligence tools into weapons in 2025 so they could launch quick, accurate network intrusions This article.

65% of Financial Institutions Ransomware Targeted as Cybercriminals Increase Attacks

65% of Financial Institutions Ransomware Targeted as Cybercriminals Increase Attacks

CYBER ATTACKZerowl

Cybercriminals continue to target the financial sector because it protects not only enormous sums of money but also sensitive personal information.

Attacking ASP.NET developers with malicious NuGet packages to steal login credentials

Attacking ASP.NET developers with malicious NuGet packages to steal login credentials

CYBER ATTACKZerowl

Four malicious NuGet packages designed to steal login credentials and create persistent backdoors inside web applications have been identified as part of.

Reddit Fined £14.47 Million by UK Regulator for Children’s Privacy Failures

Reddit Fined £14.47 Million by UK Regulator for Children’s Privacy Failures

CYBER ATTACKZerowl

Discover how Reddit was fined £14.47 million. Reddit, Inc. was fined £14.47 million ($19.52 million) by the UK's Information Commissioner's Office (ICO).

New Deserialization Vulnerability in Ruby Workers Could Enable Full System Compromise

New Deserialization Vulnerability in Ruby Workers Could Enable Full System Compromise

CYBER ATTACKZerowl

Ruby Deserialization Vulnerability A Ruby background job processing system has been found to have a critical Remote Code Execution (RCE) vulnerability.

Malicious OpenClaw Skills Used to Trick Users into Manual Password Entry for AMOS Infection

Malicious OpenClaw Skills Used to Trick Users into Manual Password Entry for AMOS Infection

CYBER ATTACKZerowl

Discover how The popular data-theft malware Atomic macOS Stealer (AMOS) has drastically changed how it targets its victims. Threat actors now embed it in.

Hackers Leverage Steganographic Images to Bypass Anti-Malware Scans and Deploy Malware Payloads

Hackers Leverage Steganographic Images to Bypass Anti-Malware Scans and Deploy Malware Payloads

CYBER ATTACKZerowl

It has been discovered that a malicious NPM package called buildrunner-dev uses steganography to evade antivirus software and install a Remote Access.

Fake Huorong Download Site Used to Deploy ValleyRAT Backdoor in Targeted Malware Campaign

Fake Huorong Download Site Used to Deploy ValleyRAT Backdoor in Targeted Malware Campaign

CYBER ATTACKZerowl

In order to fool users into downloading ValleyRAT, a Remote Access Trojan (RAT) based on the Winos4.0 framework, a group of attackers created a phony.

Diesel Vortex Russian Cybercrime Group Targets Global Logistics Sector and Steals 1,600+ Credentials

Diesel Vortex Russian Cybercrime Group Targets Global Logistics Sector and Steals 1,600+ Credentials

CYBER ATTACKZerowl

Diesel Vortex, a cybercrime organization with ties to Russia, has been covertly conducting a massive phishing campaign against freight and trucking.

Uses of ClickFix Infostealer Campaigns False CAPTCHA Attracts Victims to Compromise

Uses of ClickFix Infostealer Campaigns False CAPTCHA Attracts Victims to Compromise

CYBER ATTACKZerowl

A clever new malware campaign has surfaced that uses phony CAPTCHA lures to trick users and install a covert data thief This article explores actions.

ShinyHunters Allegedly Claim Breach of 21 Million Records from Odido

ShinyHunters Allegedly Claim Breach of 21 Million Records from Odido

CYBER ATTACKZerowl

The infamous cybercriminal collective ShinyHunters has taken credit for a significant data breach that targeted the Dutch telecom provider Odido and its.

OpenClaw Releases 2026.2.23 Released With Security Updates and New AI features

OpenClaw Releases 2026.2.23 Released With Security Updates and New AI features

CYBER ATTACKZerowl

Discover how Version 2026.2.23 of OpenClaw, the open-source personal AI assistant with more than 215,000 GitHub stars, has been released. It emphasizes.

Multiple VMware Aria Vulnerabilities Enable Remote Code Execution Attacks

Multiple VMware Aria Vulnerabilities Enable Remote Code Execution Attacks

CYBER ATTACKZerowl

On February 24, 2026, Broadcom published security advisory VMSA-2026-0001, which addressed three serious flaws in VMware Aria Operations that could allow.

Hackers Use DeepSeek and Claude To Launch Global Attack On FortiGate Devices

Hackers Use DeepSeek and Claude To Launch Global Attack On FortiGate Devices

CYBER ATTACKZerowl

In early February 2026, researchers discovered a misconfigured server at 212.11.64.250:9999 exposing over 1,400 files from an active intrusion campaign.

Top 5 this week

Page 37 of 61