Tagged: malware

REVSTEALER malware components architecture and infostealer infection process 0

The Hidden Perils of REVSTEALER Infections

Eradicating a data stealer from a computer does not mean the system is safe. The cybersecurity firm Elastic has outlined four previously unknown components linked to the REVSTEALER credential harvesting infostealer. Unlike the primary...

Pegasus spyware in Serbia forensic report detailing Pegasus spyware infections 0

Pegasus Spyware in Serbia Targets Student Activist

TL;DR Researchers at the Citizen Lab and the SHARE Foundation confirmed a mercenary spyware attack in Serbia. A zero-click exploit delivered Pegasus spyware to an iPhone belonging to a pro-democracy student activist. Meanwhile, independent...

A conceptual illustration of a hacker exploiting Microsoft Teams to gain unauthorized remote access to a corporate network. 0

Teams Phishing Targets Enterprise Access

An unexpected request originating from corporate technical support frequently appears entirely innocuous. This perception persists until an employee unwittingly surrenders computer control directly to an unknown individual. Microsoft recently exposed a highly active campaign...

A conceptual image of a deceptive software download mimicking legitimate applications 0

Deceptive Software Campaign Exposed

A routine software search recently transformed into a critical entry point for severe malware infections. Microsoft recently exposed a sophisticated counterfeit installer campaign. Participants in this operation meticulously cloned the websites of renowned software...

A conceptual image illustrating a fake MP4 file concealing malicious code 0

Fake MP4 Files Conceal Malware

Sometimes, threat actors utilize video files not for mere viewing, but for cunning concealment. Censys specialists recently discovered a sophisticated malware campaign. This campaign actively deploys structurally sound, yet entirely unplayable MP4 files. These...

A conceptual image illustrating a cybersecurity professional orchestrating a corporate cyberattack. 0

Israeli Police Arrest Cybersecurity Expert

Israeli authorities recently arrested an information security specialist. Investigators allege this individual spent his free time intentionally infecting the very corporate networks he was trained to protect. Police suspect the Ashkelon resident, a man...

A cybercriminal infiltrating a complex banking network to authorize fraudulent money transfers. 0

BREEZE COMET Attacks Brazilian Banks

Banking trojans typically target individual retail customers. However, the BREEZE COMET group selected significantly larger targets. The Google Threat Intelligence Group recently exposed this dangerous organization. Since 2024, they successfully penetrated Brazilian banks, fintech...

Hydra Remote malware operating a hidden desktop to steal active browser sessions 0

Hydra Remote Malware Hijacks Browser Sessions

The malicious software known as Hydra Remote empowers an attacker to generate a covert desktop environment on an infected computer. Crucially, this secondary workspace remains entirely invisible to the legitimate device owner. The attacker...

Malicious Firefox extensions stealing cryptocurrency 0

Malicious Firefox Extensions Steal Crypto Passwords

Security experts unearthed dozens of counterfeit Firefox extensions. These malicious add-ons masqueraded as cryptocurrency wallets and standard utilities. Some programs appeared innocuous for months. Following an update, they transformed into sinister tools. They actively...

UAT-10147 hacker group deploying SPECTRE backdoor using AI-driven attack vectors 0

UAT-10147 Hackers Use AI to Deploy SPECTRE Backdoor

A sophisticated Chinese-speaking hacker collective, designated UAT-10147, has weaponized artificial intelligence, transforming it from a rudimentary coding assistant into a formidable attack instrument. These malicious actors deploy AI agents to hunt for vulnerabilities, forge...

ToxicPanda Android banking trojan stealing PINs on a smartphone screen 0

ToxicPanda Android Banking Trojan: 2.0 Upgrade

The notorious banking trojan ToxicPanda has resurfaced in a significantly more formidable iteration. ToxicPanda 2.0 now possesses the capability to pilfer PINs from banking and cryptocurrency applications. It intercepts smartphone lock passwords with alarming...

Diagram demonstrating the KB backdoor extracting its C2 server address from desktop.ini whitespace 0

KB Backdoor Exploids Windows desktop.ini Whitespace

An exceptionally unusual Windows backdoor remained undetected on a single corporate computer for years. Astonishingly, it concealed its command-and-control server address in an incredibly obscure location. It utilized the specific number of consecutive spaces...