Recently discovered NPM malware poses as a legitimate Javascript library but launches cryptocurrency miners in Windows, macOS, & Linux machines. ...
Google TAG discloses a two-year-old phishing campaign actively targeting the channels of YouTube creators using a cookie stealing malware, later sold to the highest bidder or used for cryptocurrency scams......
Intel SGX vulnerability can be exploited with a new 'SmashEx' attack that allows privilege escalation and discloses arbitrary memory in enclaves......
Slack's XSLeak vulnerability in its file-sharing functionality can allow threat actors to de-anonymize workspace members; Slack does not plan to release a fix for it... ...
TA505 campaigns have returned to distributing tens to hundreds of thousands malicious emails targetting German-speaking countries, now uses additional loaders to deliver the FlawedGrace RAT......
PurpleFox botnet now has an updated arsenal with a new backdoor that uses WebSockets for C&C communication...
Analysis by Sentinel labs observed that KARMA Ransomware Group has similarities with other malware families such as NEMTY & JSWorm...
Argentinian Government Database that stores the ID card details of citizens has been stolen following a data breach and currently being sold online over private portals... ...
NODE.JS has released an update for HRS Vulnerabilities that arise due to space in headers and incorrect parsing of chunk extensions...
State-sponsored threat groups target telecom & IT organizations across South Asia by deploying a custom toolset on victims machines...
Sign up to our Weekley Threat Digest and keep apace of the trends shaping Cybersecurity.