Information Security News Blog

DarkSword iOS exploit infrastructure map and malware panel detection 0

DarkSword Exploit Exposes iOS Vulnerabilities

The Rise of a New Threat Six iOS vulnerabilities accidentally leaked on GitHub rapidly evolved into a formidable weapon. Now, at least seven independent threat groups actively utilize this exploit. This threat involves the...

NullReceiver npm malware Ethereum transaction C2 server obfuscation 0

North Korean Hackers Hide C2 Servers in Ethereum

North Korean cyber syndicates have long sought a method to cloak their command servers. Therefore, they want to render them untraceable and immune to blockades. Now, they utilize a seemingly ordinary cryptocurrency transfer. This...

SonicWall SMA vulnerabilities exploit chain and INC ransomware deployment 0

Critical SonicWall SMA Vulnerabilities Under Attack

The Appeal of VPN Gateways Organizations install VPN gateways at the edge of their corporate networks. They do this specifically so remote employees can securely connect to internal systems. Consequently, these devices frequently become...

Image depicting AI doxxing tools extracting private information from data leaks 0

AI Doxxing Tools: Extremist Forums Automate Harassment

Far-right internet communities have begun transforming doxxing into a nearly automated process. Users of the anonymous imageboard Soyjak Party engineered several new applications. These instruments actively hunt for data leaks. Furthermore, they cross-reference information...

Analog Devices data breach notification and corporate security investigation 0

Analog Devices Data Breach: Stolen Files Disclosed

Analog Devices, a leading semiconductor manufacturer for industrial, automotive, and telecommunications sectors, recently disclosed a corporate security incident. Consequently, unauthorized actors gained access to internal systems and stole company files. Unauthorized Access Discovered in...

Global map illustrating the SNOWLIGHT malware cyberespionage campaign targets 0

SNOWLIGHT Malware Campaign Exposed by Open Directories

The operators behind a massive, globally coordinated hacking campaign committed a fatal operational security error. They inadvertently left directories entirely open on the centralized server utilized to prepare and execute their attacks. Consequently, SOCRadar...

Payroll Pirate AiTM phishing diagram showing session hijacking and payroll redirect attack flow bank phishing reimbursement Nova ransomware apology StablR stablecoin depeg hack 0

OctLurk and SilkLurk Backdoors Target Central Asia

The system drive serial number or computer name magically transformed into an indispensable key. Without it, the malicious program simply refused to decrypt its own payload. Recently, Kaspersky researchers uncovered two previously undocumented, highly...