Tagged: malware

Hydra Remote malware operating a hidden desktop to steal active browser sessions 0

Hydra Remote Malware Hijacks Browser Sessions

The malicious software known as Hydra Remote empowers an attacker to generate a covert desktop environment on an infected computer. Crucially, this secondary workspace remains entirely invisible to the legitimate device owner. The attacker...

Malicious Firefox extensions stealing cryptocurrency 0

Malicious Firefox Extensions Steal Crypto Passwords

Security experts unearthed dozens of counterfeit Firefox extensions. These malicious add-ons masqueraded as cryptocurrency wallets and standard utilities. Some programs appeared innocuous for months. Following an update, they transformed into sinister tools. They actively...

UAT-10147 hacker group deploying SPECTRE backdoor using AI-driven attack vectors 0

UAT-10147 Hackers Use AI to Deploy SPECTRE Backdoor

A sophisticated Chinese-speaking hacker collective, designated UAT-10147, has weaponized artificial intelligence, transforming it from a rudimentary coding assistant into a formidable attack instrument. These malicious actors deploy AI agents to hunt for vulnerabilities, forge...

ToxicPanda Android banking trojan stealing PINs on a smartphone screen 0

ToxicPanda Android Banking Trojan: 2.0 Upgrade

The notorious banking trojan ToxicPanda has resurfaced in a significantly more formidable iteration. ToxicPanda 2.0 now possesses the capability to pilfer PINs from banking and cryptocurrency applications. It intercepts smartphone lock passwords with alarming...

Diagram demonstrating the KB backdoor extracting its C2 server address from desktop.ini whitespace 0

KB Backdoor Exploids Windows desktop.ini Whitespace

An exceptionally unusual Windows backdoor remained undetected on a single corporate computer for years. Astonishingly, it concealed its command-and-control server address in an incredibly obscure location. It utilized the specific number of consecutive spaces...

Diagram showing the PATCHCORD backdoor infection chain altering browser shortcuts 0

PATCHCORD Backdoor Spearheads South Asian Cyberespionage

Security specialists at Acronis uncovered an active cyberespionage campaign targeting telecommunications companies in Afghanistan. Furthermore, the attackers focus heavily on government agencies and critical infrastructure facilities across South Asia. To execute these attacks, threat...

AI cyber threat trends chart showing LLMjacking and supply chain attacks 0

AI Cyber Threat Trends Surge in 2025

Exploiting AI Infrastructure An attacker dispatched nearly 200,000 requests to a language model in just two minutes. Specifically, they leveraged a stolen access key to execute this massive flood. Consequently, such strikes rapidly transform...

Shai-Hulud npm worm architecture and JavaScript supply chain attack payload 0

Shai-Hulud npm Worm Compromises Supply Chain

The Initial JavaScript Breach A single installation of a routine JavaScript library could expose a company’s cloud infrastructure, repositories, and internal services to attackers. The Shai-Hulud npm worm infiltrated highly popular packages. Users download...

NullReceiver npm malware Ethereum transaction C2 server obfuscation 0

North Korean Hackers Hide C2 Servers in Ethereum

North Korean cyber syndicates have long sought a method to cloak their command servers. Therefore, they want to render them untraceable and immune to blockades. Now, they utilize a seemingly ordinary cryptocurrency transfer. This...

Global map illustrating the SNOWLIGHT malware cyberespionage campaign targets 0

SNOWLIGHT Malware Campaign Exposed by Open Directories

The operators behind a massive, globally coordinated hacking campaign committed a fatal operational security error. They inadvertently left directories entirely open on the centralized server utilized to prepare and execute their attacks. Consequently, SOCRadar...