Category: Malware

A conceptual illustration of a hacker exploiting Microsoft Teams to gain unauthorized remote access to a corporate network. 0

Teams Phishing Targets Enterprise Access

An unexpected request originating from corporate technical support frequently appears entirely innocuous. This perception persists until an employee unwittingly surrenders computer control directly to an unknown individual. Microsoft recently exposed a highly active campaign...

Nearly 22,000 internet-facing Exchange servers remain unpatched against CVE-2026-62911, an authentication bypass that can hijack every user's mailbox 0

22,000 Exchange Servers Exposed to Mailbox-Hijack Flaw

Corporate email can fall into an attacker’s hands after the compromise of a single low-privilege account. Nearly 22,000 internet-facing Microsoft Exchange servers have not received the fix for CVE-2026-62911, a flaw that allows every...

A conceptual image illustrating a fake MP4 file concealing malicious code 0

Fake MP4 Files Conceal Malware

Sometimes, threat actors utilize video files not for mere viewing, but for cunning concealment. Censys specialists recently discovered a sophisticated malware campaign. This campaign actively deploys structurally sound, yet entirely unplayable MP4 files. These...

BraZetsu malware profiling a compromised computer by value to feed an underground Initial Access Broker marketplace 0

BraZetsu Malware Ranks and Sells Access to Compromised PCs

A hacked computer has become a commodity whose value an algorithm determines by its banking software, corporate systems, and owner data. Group-IB specialists have discovered a malicious framework named BraZetsu, which supplies an underground...

A cybercriminal infiltrating a complex banking network to authorize fraudulent money transfers. 0

BREEZE COMET Attacks Brazilian Banks

Banking trojans typically target individual retail customers. However, the BREEZE COMET group selected significantly larger targets. The Google Threat Intelligence Group recently exposed this dangerous organization. Since 2024, they successfully penetrated Brazilian banks, fintech...

A conceptual image illustrating the static deobfuscation process extracting readable pseudocode from the JSCeal compiled V8 bytecode malware 0

Static Deobfuscation Defeats JSCeal Cryptocurrency Malware Defenses

Compiled code no longer functions as an impenetrable shell protecting JSCeal. Check Point specialists recently developed a fully static deobfuscation method. This innovative technique effectively transforms the hidden malware into readable pseudocode. Crucially, it...

GoCaracal malware retrieving a backup command-and-control address from an Ethereum smart contract 0

GoCaracal Malware Uses Ethereum Smart Contract for C2 Backup

Blocking a malware’s command server is usually insufficient if a new address can be fetched straight from the blockchain. Arctic Wolf specialists have discovered a previously unknown modular malware belonging to the Dark Caracal...

Illustration of a neural network being disrupted by a prohibited comment embedded in malicious code 0

Malware Now Targets AI Analysis Systems

Malicious code no longer necessarily requires complex obfuscation to successfully evade neural network detection. Sometimes, merely inserting a specific phrase within a comment suffices. The artificial intelligence will subsequently refuse to continue its analysis...