Category: Malware

Global map illustrating the SNOWLIGHT malware cyberespionage campaign targets 0

SNOWLIGHT Malware Campaign Exposed by Open Directories

The operators behind a massive, globally coordinated hacking campaign committed a fatal operational security error. They inadvertently left directories entirely open on the centralized server utilized to prepare and execute their attacks. Consequently, SOCRadar...

H96 Android TV boxes hijacked for ad fraud and residential proxies 0

H96 Android TV Boxes Secretly Drive Massive Ad Fraud

The Hidden Life of Cheap Streaming Devices An inexpensive set-top box connected to your television could be generating illicit revenue long after the screen goes dark, entirely without your knowledge. Cybersecurity researchers at Bitsight...

AnMed malware cyberattack impacting clinic closures and healthcare services 0

AnMed Malware Cyberattack Shuts Down Clinic Operations

Initial Disruptions and Network Failures Digital infrastructure failures increasingly disrupt medical clinic operations. Recently, another severe cyber incident struck the United States. This devastating attack forced a major healthcare system to suspend various essential...

Illustration of a Copilot prompt injection attack altering a corporate Word document 0

The Dawn of the AI Worm: Copilot Prompt Injection

An infected Word document can imperceptibly distort a corporate report and subsequently transfer malicious instructions into new files. Merely opening the document is insufficient to launch this attack. Instead, the file must enter the...

GenieLocker ransomware attacks and encryption process overview 0

GenieLocker Ransomware Attacks Target Cross-Platform Systems

Cybercriminals now possess a proprietary tool to simultaneously strike workstations, Linux servers, and corporate virtual infrastructures. Hackers already deploy the new GenieLocker ransomware against Russian organizations. Furthermore, industrial enterprises frequently fall victim to these...

Cl0p affiliates targeting PTC Windchill and FlexPLM servers using CVE-2026-12569 0

Cl0p Affiliates Exploit PTC Windchill for Corporate Extortion

Corporate systems designed to securely warehouse engineering blueprints and proprietary project documentation have morphed into a lucrative extortion vector for cybercriminals. Malicious actors are actively breaching PTC Windchill and FlexPLM servers, exfiltrating invaluable intellectual...

Dependabot update cooldown workflow protecting software supply chain security 0

Dependabot and PyPI Add Supply Chain Cooldowns

GitHub and the Python Package Index (PyPI) have introduced strategic delays into dependency updates, discouraging developers from inadvertently deploying malicious packages upon initial release. Dependabot now enforces a mandatory three-day holding period by default,...

Meccha Chameleon malware infection vector via Steam Workshop maps 0

Meccha Chameleon Malware Spreads via Steam Workshop

Players of the indie game Meccha Chameleon recently encountered a dangerous security threat. Specifically, malicious actors delivered a malware dropper disguised as custom Steam Workshop maps. Furthermore, the incident escalated when attackers hijacked the...