LATEST

Phishing Campaigns Use Real-Time Checks to Validate Victim Emails Before Credential Theft

Phishing Campaigns Use Real-Time Checks to Validate Victim Emails Before Credential Theft

CYBER ATTACKZerowl

A credential phishing scheme only targets high-value targets by using real-time email validation. Additionally, details of an email phishing campaign that uses file deletion reminders as a lu

North Korean Kimsuky Hackers Use Russian Email Addresses for Credential Theft Attacks

North Korean Kimsuky Hackers Use Russian Email Addresses for Credential Theft Attacks

CYBER ATTACKZerowl

A number of phishing attacks have been connected to Kimsuky, a threat actor associated with North Korea. Sending emails from Russian sender addresses is a component of the attacks. The ultima

North Korean Group Collaborates with Play Ransomware in Significant Cyber Attack

North Korean Group Collaborates with Play Ransomware in Significant Cyber Attack

CYBER ATTACKZerowl

According to Palo Alto Networks, North Korean threat actors connected to Jumpy Pisces, APT45, and Andariel used Play. It is the first known instance of an underground ransomware network and a

New Ymir Ransomware Exploits Memory for Stealthy Attacks; Targets Corporate Networks

New Ymir Ransomware Exploits Memory for Stealthy Attacks; Targets Corporate Networks

CYBER ATTACKZerowl

Kaspersky: Ymir, a ransomware family, was used in an attack two days after RustyStealer, a stealer malware. It is thought that the ransomware was installed by gaining unauthorized access to t

New SparrowDoor Backdoor Variants Found in Attacks on U.S. and Mexican Organizations

New SparrowDoor Backdoor Variants Found in Attacks on U.S. and Mexican Organizations

CYBER ATTACKZerowl

FamousSparrow is connected to a cyberattack that targeted a Mexican research institute and a trade association in the United States. The threat actor launches a web shell on an Internet Infor

New GootLoader Campaign Targets Users Searching for Bengal Cat Laws in Australia

New GootLoader Campaign Targets Users Searching for Bengal Cat Laws in Australia

CYBER ATTACKZerowl

The Goot loader malware targets users who are looking into whether Bengal cats are legal in Australia. When victims search for specific terms, such as legal documents, the malware is installe

New Golang-Based Backdoor Uses Telegram Bot API for Evasive C2 Operations

New Golang-Based Backdoor Uses Telegram Bot API for Evasive C2 Operations

CYBER ATTACKZerowl

Telegram is used as a command-and-control (C2) communication mechanism in a new Golang-based backdoor. It may have Russian roots, according to Netskope Threat Labs. Malware is made to detect

New CRON#TRAP Malware Infects Windows by Hiding in Linux VM to Evade Antivirus

New CRON#TRAP Malware Infects Windows by Hiding in Linux VM to Evade Antivirus

CYBER ATTACKZerowl

A recent malware campaign uses a Linux virtual instance with a backdoor to infect Windows systems. Codenamed CRON#TRAP, the "intriguing" campaign begins with a malicious Windows shortcut (LNK

New Android Banking Malware 'ToxicPanda' Targets Users with Fraudulent Money Transfers

New Android Banking Malware 'ToxicPanda' Targets Users with Fraudulent Money Transfers

CYBER ATTACKZerowl

A new strain of Android banking malware has infected more than 1,500 Android devices. Threat actors can carry out fraudulent banking transactions thanks to ToxicPanda. The malware is thought

Microsoft: Russian-Linked Hackers Using 'Device Code Phishing' to Hijack Accounts

Microsoft: Russian-Linked Hackers Using 'Device Code Phishing' to Hijack Accounts

CYBER ATTACKZerowl

Microsoft is drawing attention to Storm-2372, an emerging threat cluster. Since August 2024, it has been linked to a fresh wave of cyberattacks targeting various industries. In Europe, North

Top 5 this week

Page 202 of 211