Malware

APT Groups Exploit Microsoft ClickOnce for Malware Execution via Trusted Hosts

A recent report by the Trellix Advanced Research Center has exposed a highly advanced malware campaign, dubbed “OneClik,” which leverages…

11 months ago

RIFT – Microsoft’s New Open-Source Tool for Analyzing Malware in Rust Binaries

The release of RIFT (Rust Identification and Function Tagging), an open-source tool designed to help malware analysts identify attacker-written code…

11 months ago

Alert: SHOE RACK Malware Targeting Fortinet Firewalls via DOH & SSH Protocols, Says NCSC

Security researchers and national cyber defence authorities are raising the alarm over a sophisticated post-exploitation tool named “SHOE RACK,” which…

11 months ago

Signed Malware Delivered via Exploited ConnectWise Settings – A New Threat Actor Tactic

Since early 2025, cybersecurity professionals have observed a sharp rise in malware campaigns leveraging the very security mechanisms designed to…

11 months ago

North Korean Hackers Exploit GitHub Infrastructure to Distribute Malware

A recent investigation has revealed a highly sophisticated spearphishing campaign in which North Korean hackers used GitHub, a prominent code-hosting…

11 months ago

SVG Image Exploit – Shadow Vector Malware Uses Malicious Files to Spread AsyncRAT and RemcosRAT

Cybercriminals are leveraging a sophisticated malware campaign dubbed Shadow Vector, which has been uncovered by the Acronis Threat Research Unit (TRU).…

11 months ago

Zoom App Targeted by BlueNoroff Hackers for Infostealer Malware Attack

A recent investigation by cybersecurity experts at Field Effect Analysis has uncovered a targeted cyberattack leveraging the popular Zoom video…

11 months ago

New Malware Threat ‘UMBRELLA STAND’ Targets Fortinet FortiGate Firewalls, NCSC Issues Warning

In a significant cybersecurity alert, the UK's National Cyber Security Centre (NCSC) has released a detailed report warning of a…

11 months ago

Python Malware Targets Windows Systems Through Cloudflare Tunnels Exploited by Hackers

A new wave of cyberattacks, dubbed SERPENTINE#CLOUD, is leveraging Python, Cloudflare tunneling services, and deceptive file tactics to compromise Windows…

11 months ago

Cybercriminals Use VBScript to Deploy Masslogger Credential Stealer Malware

Security researchers at Seqrite Labs have uncovered a new wave of sophisticated cyberattacks where cybercriminals utilize encoded VBScript (.VBE) files…

11 months ago