CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
Ransomware Hackers Are Going After Your Managers 62% of Victims Hold Senior Roles

Ransomware Hackers Are Going After Your Managers 62% of Victims Hold Senior Roles

CYBER ATTACKZerowl

Ransomware hackers are increasingly targeting managers and senior executives instead of just focusing on technical administrators This article explores.

Phishing, Cracked Software and Discord Links Spread Phantom Stealer Across Multiple Countries

Phishing, Cracked Software and Discord Links Spread Phantom Stealer Across Multiple Countries

CYBER ATTACKZerowl

Phantom Stealer, a .NET-based malware targeting Windows devices, has been detected in phishing emails, pirated software downloads, and malicious links on.

Phantom Stealer Hides Inside PNG Files, Then Steals Your Passwords, Cookies and Crypto

Phantom Stealer Hides Inside PNG Files, Then Steals Your Passwords, Cookies and Crypto

CYBER ATTACKZerowl

Phantom Stealer transforms familiar files into hidden locations. The credential-stealing malware conceals its next phase within PNG resources, gathering.

Pass-the-Passkey Attack Bypasses Phishing-Resistant MFA and Impersonates Privileged Users

Pass-the-Passkey Attack Bypasses Phishing-Resistant MFA and Impersonates Privileged Users

CYBER ATTACKZerowl

A newly disclosed "Pass-the-Passkey" family of attacks showcases how implementation flaws in WebAuthn can compromise passkey protections, even when.

One Missing MFA Control Lets Credential Spray Become Full Akira Ransomware Intrusion

One Missing MFA Control Lets Credential Spray Become Full Akira Ransomware Intrusion

CYBER ATTACKZerowl

A single lapse in multi-factor authentication allowed a basic credential spray to escalate into a nearly complete Akira ransomware breach in early August.

Nightmare-Eclipse Drops ShieldBreak Windows Defender 0-day Vulnerability

Nightmare-Eclipse Drops ShieldBreak Windows Defender 0-day Vulnerability

CYBER ATTACKZerowl

The prolific and controversial security researcher known as Nightmare-Eclipse (also tracked under Chaotic Eclipse) has released a ninth Windows zero-day.

New WindRelay Android Malware Relays Bank Cards While SpyNote RAT Controls Victim Phones

New WindRelay Android Malware Relays Bank Cards While SpyNote RAT Controls Victim Phones

CYBER ATTACKZerowl

A new malware family called WindRelay is being used with SpyNote Remote Access Trojan (RAT) to steal money through live NFC card-relay fraud This article.

New Plug & Pwn Attack Abuses Windows Plug and Play to Gain SYSTEM Privileges

New Plug & Pwn Attack Abuses Windows Plug and Play to Gain SYSTEM Privileges

CYBER ATTACKZerowl

A newly disclosed "Plug & Pwn" attack chain exploits Windows' Plug and Play (PnP) driver installation process to execute unauthorized code as SYSTEM This.

New Phishing Attack Uses SSL/TLS Certificates to Target Customers of High-Value Brands via WhatsApp

New Phishing Attack Uses SSL/TLS Certificates to Target Customers of High-Value Brands via WhatsApp

CYBER ATTACKZerowl

A new phishing attack is leveraging web certificates and chosen URLs to target high-value brand customers via WhatsApp This article explores new phishing.

New GhostJacking Attacks Hijack AI Agents to Bypass Firewalls and Steal Cloud Credentials

New GhostJacking Attacks Hijack AI Agents to Bypass Firewalls and Steal Cloud Credentials

CYBER ATTACKZerowl

A newly revealed "Ghostjacking" attack pattern exploits trusted operational data such as blocked web requests and monitoring alerts within enterprises.

New Abyssos RAT Hijacks Browser Sessions, Steals Credentials and Gives Attackers Remote VNC Access

New Abyssos RAT Hijacks Browser Sessions, Steals Credentials and Gives Attackers Remote VNC Access

CYBER ATTACKZerowl

Abyssos functions as a post-exploitation framework This article explores abyssos malware employs. . Once an attacker gains access to a device, they can.

Microsoft SharePoint RCE Flaw Chains Allow Unauthenticated Server Takeover

Microsoft SharePoint RCE Flaw Chains Allow Unauthenticated Server Takeover

CYBER ATTACKZerowl

A newly discovered vulnerability in Microsoft SharePoint Server has raised significant concerns among enterprise security defenders following researchers’.

Microsoft Patches 398 Windows Flaws Including Actively Exploited WinSock Zero-Day

Microsoft Patches 398 Windows Flaws Including Actively Exploited WinSock Zero-Day

CYBER ATTACKZerowl

Microsoft has released security updates for August 2026, addressing 398 CVEs across Windows, Office, SharePoint Server, Azure services, .NET, PowerShell.

Microsoft Patch Tuesday Update August 2026 – 394 Vulnerabilities Fixed, Including 3 Zero-Days

Microsoft Patch Tuesday Update August 2026 – 394 Vulnerabilities Fixed, Including 3 Zero-Days

CYBER ATTACKZerowl

Discover how Microsoft has released its August 2026 Patch Tuesday security updates, addressing over 394 vulnerabilities across various Microsoft products.

Microsoft Outlook RCE Flaw Lets Attackers Execute Code via Malicious Office Files

Microsoft Outlook RCE Flaw Lets Attackers Execute Code via Malicious Office Files

CYBER ATTACKZerowl

Microsoft has identified a high-severity remote code execution flaw in Outlook, enabling threat actors to run malicious code on targeted devices by.

LiteLLM Supply Chain Attack Potentially Exposes 2,500 Companies and 434,000 CI/CD Pipelines

LiteLLM Supply Chain Attack Potentially Exposes 2,500 Companies and 434,000 CI/CD Pipelines

CYBER ATTACKZerowl

A compromised LiteLLM component has raised concerns about how trusted AI software can become an entry point into networks. LiteLLM’s build pipeline.

Hackers Weaponize Job Offers With Zero-Day Exploit to Gain Silent System Access

Hackers Weaponize Job Offers With Zero-Day Exploit to Gain Silent System Access

CYBER ATTACKZerowl

A new wave of the DPRK-linked Lazarus group’s Operation Dream Job is revealing that their campaign now exploits an unknown Windows kernel vulnerability.

Hackers Hide Malware Infrastructure on Polygon Blockchain and Trick Users Into Running It With ClickFix

Hackers Hide Malware Infrastructure on Polygon Blockchain and Trick Users Into Running It With ClickFix

CYBER ATTACKZerowl

Hackers leverage the Polygon blockchain to obscure parts of an ErrTraffic malware operation This article explores hackers leverage polygon. . Indicators.

Hackers Actively Exploiting VMware vCenter Systems to Gain and Maintain Remote Access

Hackers Actively Exploiting VMware vCenter Systems to Gain and Maintain Remote Access

CYBER ATTACKZerowl

An active cyberattack campaign targeting internet-accessible VMware vCenter instances. Researchers discovered evidence suggesting advanced persistent.

Gunra Targets Primary and Disaster-Recovery Backups Before File Encryption

Gunra Targets Primary and Disaster-Recovery Backups Before File Encryption

CYBER ATTACKZerowl

Discover how The Gunra ransomware gang employs a methodical strategy that aims to thwart all potential recovery routes before implementing the malware. In.

Gunra Ransomware Exploits Fortinet VPN Flaws to Bypass MFA and Steal Enterprise Data

Gunra Ransomware Exploits Fortinet VPN Flaws to Bypass MFA and Steal Enterprise Data

CYBER ATTACKZerowl

Discover how A joint cybersecurity advisory from the FBI, CISA, Department of Defense Cyber Crime Center, NSA, U.S. Gunra first surfaced in April 2025 as.

Google Chrome Blocks 7 Billion Abusive Notifications a Day With Multi-Layered Defenses

Google Chrome Blocks 7 Billion Abusive Notifications a Day With Multi-Layered Defenses

CYBER ATTACKZerowl

Google Chrome has significantly reduced abusive notifications by over 7 billion daily across Android during Q1 of 2026, per a recent technical overview.

Google-themed Credential Phishing Attempt Delivered Through a Fake ‘New Audio MSG’ Email

Google-themed Credential Phishing Attempt Delivered Through a Fake ‘New Audio MSG’ Email

CYBER ATTACKZerowl

A new phishing campaign uses a fake "New Audio MSG" email to lure recipients into a Google-themed sign-in page, tricking them into sharing their.

Fake Proton VPN and NordVPN Chrome Extensions Route Users Through Unrelated Proxy Network

Fake Proton VPN and NordVPN Chrome Extensions Route Users Through Unrelated Proxy Network

CYBER ATTACKZerowl

A vast network of fake Chrome VPN extensions has been discovered, masquerading as reputable brands like ProtonVPN and NordVPN. The Threat Research Team.

Fake CCleaner Installer Deploys GhostDesk Chrome Spyware to Steal Credentials, Cookies and Keystrokes

Fake CCleaner Installer Deploys GhostDesk Chrome Spyware to Steal Credentials, Cookies and Keystrokes

CYBER ATTACKZerowl

Cybercriminals are using a fake CCleaner installer to infect Windows users with GhostDesk, a malicious Chrome extension designed to spy on browsing.

Fake CCleaner Download Installs GhostDesk Chrome Spyware on Windows PCs

Fake CCleaner Download Installs GhostDesk Chrome Spyware on Windows PCs

CYBER ATTACKZerowl

Windows users seeking a familiar cleanup tool are often lured to deceptive counterfeit pages, where they unwittingly download GhostDesk—a malicious Chrome.

DEF CON Attendees Allegedly Jammed Plane Wi-Fi and Broadcast Fake ‘Delta WiFi Fast’ Network

DEF CON Attendees Allegedly Jammed Plane Wi-Fi and Broadcast Fake ‘Delta WiFi Fast’ Network

CYBER ATTACKZerowl

A Delta Air Lines flight carrying passengers home from this year’s largest hacking conference became the center of a rapidly escalating cybersecurity.

Top 5 this week

Page 5 of 60