Tuesday, May 26, 2026
HomeMalware

Malware

Cybercriminals Leverage DevOps Web Server Flaws to Spread Malware

The rise of DevOps practices has revolutionized software development, fostering rapid code deployment and continuous integration. However, these same advancements have also made web servers prime targets for cybercriminals. Recent incidents reveal a surge in attacks exploiting vulnerabilities in DevOps-managed web servers, resulting in...

Fake Booking.com Sites Spread AsyncRAT Malware in Holiday-Themed Scam

With the summer travel season in full swing, cybercriminals have launched a sophisticated campaign targeting travelers through fake Booking.com websites, redirect links, and fraudulent sponsored ads. According to recent research by Malwarebytes, this campaign leverages evolving domains, fake CAPTCHAs, and dangerous clipboard hijacking techniques...

Millions of Linux Systems Worldwide Exposed by Critical Vulnerabilities Leaking Password Hashes

A pair of high-severity vulnerabilities discovered by Qualys threaten the security of millions of Linux systems worldwide, exposing hashed credentials stored in  / etc / shadow through race condition exploits in the core-dump handlers of major distributions. These vulnerabilities, tracked as CVE-2025-5054 (apport on Ubuntu)...

APT Hackers Using TOUGHPROGRESS Malware to Exploits Google Calendar for C2 – Google Warns

In a new wave of sophisticated cyberattacks, Google’s Threat Intelligence Group (GTIG) has raised the alarm over a campaign orchestrated the China-linked APT41 (also known as HOODOO). The attackers are using a custom malware dubbed TOUGHPROGRESS, ingeniously manipulating Google Calendar as its command-and-control (C2) channel—a...

Weaponized AI Tool Installers Infect Windows Devices with Ransomware

A new wave of cyberattacks, where malicious actors exploit AI’s popularity by distributing weaponized installers that deliver ransomware and destructive malware to unsuspecting Windows users. Cisco Talos has recently uncovered three notable threats CyberLock ransomware, the Lucky_Gh0$t ransomware, and a destructive malware named Numero,...