Russian Sandworm APT targets critical sectors in BadPilot multi-year campaign
The 'BadPilot' campaign involves a series of targeted cyberattacks leveraging bugs in widely used IT infrastructure software.
The 'BadPilot' campaign involves a series of targeted cyberattacks leveraging bugs in widely used IT infrastructure software.
The two men arrested in Spain are accused of overseeing the global distribution of Sky ECC devices and software.
The attackers utilized a BACKORDER loader to deploy DarkCrystal RAT.
The new tactic involves the threat actor tricking individuals into executing PowerShell commands as administrators.
The two actively exploited vulnerabilities are tracked as CVE-2025-21391 and CVE-2025-21418.
CVE-2025-24200 could allow a malicious actor to disable USB Restricted Mode on a locked device.
Zservers is responsible for providing cybercriminals with servers and other critical infrastructure designed to evade law enforcement detection.
Council and his co-conspirators gained access to the SEC’s account through a SIM swap.
The alleged crimes include deploying Phobos ransomware between April 30, 2023, and October 26, 2024, against 17 Swiss companies.
The malware contains a hidden backdoor that enables attackers to gain persistent access to compromised sites.
Showing elements 911 - 920