Tag Archives: Malware
Mini Shai-Hulud Worm: TeamPCP Targets GitHub and npm
The Mini Shai-Hulud worm has launched a massive software supply chain campaign, targeting GitHub and npm registries to harvest credentials and exfiltrate corporate data. Continue reading
Fox Tempest Malware-Signing Service Disrupted by Microsoft
Microsoft has dismantled the prolific Fox Tempest malware operation, a specialized service that enabled major ransomware gangs to bypass Windows security mechanisms. Continue reading
JDownloader Supply Chain Compromise: Python-Based RAT Distributed
A major JDownloader supply chain compromise has resulted in the distribution of a Python-based RAT through malicious installer links on the official website. Continue reading
GlassWorm Sleeper Extensions: Malicious Payloads Activated on OpenVSX
Security researchers have identified 73 GlassWorm sleeper extensions on the OpenVSX marketplace that have recently activated malicious payloads to exfiltrate sensitive developer data. Continue reading
VECT 2.0 Ransom-Wiper: Why File Recovery is Mathematically Impossible
Check Point researchers have identified the VECT 2.0 Ransom-Wiper, a destructive malware variant that discards critical decryption nonces to ensure enterprise data cannot be recovered. Continue reading
Fast16 Sabotage Malware: The Pre-Stuxnet Discovery Rewriting History
Cybersecurity researchers have discovered Fast16 sabotage malware, a Lua-based framework from 2005 that predates Stuxnet and targets industrial calculation software to cause physical damage. Continue reading
ClickFix Social Engineering Campaign Exploits Native Windows Tools
The latest ClickFix social engineering campaign utilizes fake CAPTCHA pages to trick users into executing malicious code via native Windows utilities like cmdkey and regsvr32. Continue reading
Firestarter Stealth Backdoor Discovered in Cisco Networking Infrastructure
CISA warns of the Firestarter stealth backdoor, a sophisticated malware targeting Cisco Secure Firewall devices to maintain persistence within critical national infrastructure. Continue reading
UNC6692 Microsoft Teams Campaign Exploits IT Help Desk
Researchers have identified the UNC6692 Microsoft Teams campaign, a sophisticated social engineering threat where attackers impersonate IT staff to deploy SNOW malware via Quick Assist. Continue reading