China-linked FishMonger group expands SprySOCKS backdoor to Windows systems
ESET confirmed real-world activity between 2023 and 2024, targeting government organizations in Honduras, Taiwan, Thailand, and Pakistan.
ESET confirmed real-world activity between 2023 and 2024, targeting government organizations in Honduras, Taiwan, Thailand, and Pakistan.
Cisco has released patches for CVE-2026-20262, a zero-day vulnerability affecting Catalyst SD-WAN Manager.
GhostWriter has increasingly focused on Gmail users since March of this year.
GTIG believes the attackers first compromised the organization in September 2023 after probing outdated REDCap installations.
AudiA6 operated between 2022 and 2025 as a cryptocurrency mixing service that helped criminals hide the origin of stolen funds.
The attacker added malicious installation scripts that downloaded and executed a rogue npm package during software installation.
Shadowserver reported that attackers had already compromised and backdoored some of publicly accessible Sentry gateways.
The attackers deployed a modified GS-Netcat reverse shell disguised as a legitimate system component for remote access.
In brief: Windows Netlogon, Oracle, PAN-OS bugs exploited in the wild, Gamaredon APT targets Ukrainian government, and more.
TA4922 now conducts more unique campaigns than any other cybercrime actor, says Proofpoint.
Showing elements 21 - 30