News

HP Wolf has reported the use of multiple, uncommon binaries and novel uses of legitimate image files in recent malicious ...
AsyncRAT exploits ConnectWise ScreenConnect via fileless loader, stealing credentials and crypto data, maintaining ...
A sophisticated fileless malware campaign has been observed using legitimate tools to deliver AsyncRAT executed in memory ...
IntroductionAPT37 (also known as ScarCruft, Ruby Sleet, and Velvet Chollima) is a North Korean-aligned threat actor active since at least 2012. APT37 primarily targets South Korean individuals ...
A newly identified ransomware group is targeting victims across the Asia Pacific region using custom-built evasion ...
Victims already span 17 countries, with manufacturing and construction hardest hit. Analysts warn that custom evasion tooling ...
Attackers are leveraging a sample machine key in Sitecore products for initial access before ViewState code injections lead ...
Tiny11 developer NTDev has emerged from obscurity to announce a new version of the Tiny11 builder script. The tool is designed to create a "streamlined" Windows ...
A Chinese APT group compromised a Philippine military company using a new, fileless malware framework called EggStreme. This ...
Vidar is powered by a PowerShell script that can steal data from a remote server through the use of stealth techniques such ...
Researchers at cyber security vendor Darktrace have unearthed what they say is the first documented case of NBMiner ...
Microsoft this past week released a couple of new optional non-security preview C release updates under KB5064080 (for ...