Monday, May 4, 2026
HomeCyber News

Cyber News

Phishing Attack Exploits PDFs to Impersonate Major Brands like Microsoft, DocuSign, and Dropbox

A recent spike in phishing campaigns has seen attackers exploit the PDF file format to impersonate leading brands, including Microsoft, DocuSign, and Dropbox. According to Cisco Talos, the security research arm of Cisco, threat actors are leveraging the popularity and trust associated with these...

Massive Data Breach at Esse Health Compromises Personal and Medical Records of 263,000 Patients

In a significant cybersecurity incident, Esse Health, one of the largest independent primary care groups in St. Louis, has confirmed a data breach that exposed the sensitive personal and medical information of approximately 263,000 patients. The breach, first detected on April 21, 2025, underscores...

macOS Malware Steals Keychain Data via Process Injection and Remote Communication

In a significant escalation of cyber threats targeting the cryptocurrency sector, security researchers have uncovered a sophisticated North Korean (DPRK)-linked campaign using Nim-compiled binaries and advanced multi-stage attack chains against Web3 and crypto-related businesses. The operation, collectively dubbed “NimDoor,” demonstrates novel macOS malware techniques, including...

How Malicious IDE Extensions Can Bypass Trust Security and Infect Developer Machines

The security of millions of developers is at risk after new research revealed critical flaws in how the world’s most popular Integrated Development Environments (IDEs) verify third-party extensions. The OX research team has uncovered an alarming vulnerability: attackers can craft extensions that retain the...

Qwizzserial Android Malware – How Fake Apps Steal Banking Data and Intercept 2FA SMS

A new Android malware campaign is causing financial havoc in Uzbekistan, as cybercriminals leverage Telegram to spread the Qwizzserial malware, an advanced SMS stealer that targets local banking systems. First detected by cybersecurity firm Group-IB in March 2024, Qwizzserial has rapidly infected an estimated...

Linux SSH Servers Under Siege – Hackers Deploying TinyProxy and Sing-box Proxy Tools

The AhnLab Security Intelligence Center (ASEC) has sounded the alarm over a new wave of cyberattacks targeting Linux servers with weak or default SSH credentials. Using sophisticated honeypots, ASEC has observed a sharp rise in attacks that exploit misconfigured servers to deploy proxy tools...