Targeting Mixed Shell Malware Supply Chain Makers Delivered via Contact Form

Cybersecurity researchers are turning their attention to sophisticated social engineering campaigns targeting manufacturers who are critical of supply chains with memory malware called mixed shells. This activity is called a zip line by checkpoint research. “Instead of sending unsolicited phishing emails, the attacker will start contacting them via the company’s public ‘contact’ form and trick […]

Shadowcaptcha exploits wordpress sites to spread ransomware, information steelers and cryptominers

It has been observed that a new, massive campaign uses over 100 compromised WordPress sites to direct site visitors to fake Captcha verification pages that provide information steelers, ransomware, and cryptocurrency miners using ClickFix social engineering tactics. The large-scale cybercrime campaign, first detected in August 2025, is known as Shadowcaptcha by the National Digital Agency […]

HookAndroidTrojan adds ransomware overlays and extends to 107 remote commands

August 26, 2025Ravi Lakshmanan Cybersecurity researchers have discovered a new variant of the Android Banking Trojan called Hook, which has a ransomware-style overlay screen to display fear tor messages. “A notable feature of the latest variant is its ability to deploy full-screen ransomware overlays, which aims to force victims to pay ransom,” said Vishnu Pratapagiri, […]

Check all Android developers in Google 4 countries to block malicious apps

August 26, 2025Ravi LakshmananMobile Security/Data Privacy Google has announced plans to begin checking the IDs of all developers who distribute apps on Android. “Android requires that all apps be registered by a validated developer for users to install on certified Android devices,” the company said. “This creates important accountability and makes it much more difficult […]

CISA adds three exploited vulnerabilities to the KEV catalog affecting Citrix and Git

August 26, 2025Ravi LakshmananVulnerability/Data Security The US Cybersecurity and Infrastructure Security Agency (CISA) on Monday added three security flaws affecting Citrix session recording and GIT to its known exploited vulnerabilities (KEV) catalogue based on evidence of active exploitation. Here’s the list of vulnerabilities – CVE-2024-8068 (CVSS Score: 5.1) – An inappropriate privilege management vulnerability in […]

UNC6384 deploys Plugx via captive portal hijacking and valid certificates targeted at diplomats

August 25, 2025Ravi LakshmananMalware/Cyberspy The Chinese and Nexus threat actor, known as UNC6384, is promoting Beijing’s strategic interests due to a series of attacks targeting diplomats from other entities across Northeast Asia and around the world. “This multi-stage attack chain leverages sophisticated social engineering, including valid code signing certificates, man-in-the-middle (AITM) attacks, and indirect execution […]

Docker Fix CVE-2025-9074, Critical Container Escape Vulnerability with CVSS Score 9.3

August 25, 2025Ravi LakshmananContainer Security/Vulnerabilities Docker has released fixes to address critical security flaws affecting Docker desktop apps on Windows and MacOS, which could allow attackers to escape from the scope of the container. The CVSS score for vulnerabilities tracked as CVE-2025-9074 is 9.3 out of 10.0. Addressed in version 4.44.3. “Malicious containers running on […]

Phishing campaigns deliver rat payloads using upcrypter with fake voicemail email

Cybersecurity researchers are flagging new phishing campaigns using fake voicemail and purchase orders to deliver malware loaders called Upcryptors. The campaign “creates carefully crafted emails to deliver malicious URLs linked to persuasive phishing pages,” said Cara Lin, a researcher at Fortinet Fortiguard Labs. “These pages are designed to tempt you to download JavaScript files where […]

Password Manager Flaws, Apple 0-Day, Hidden AI Prompts, In-the-Wild Exploits & More

Aug 25, 2025Ravie LakshmananCybersecurity News / Hacking Cybersecurity today moves at the pace of global politics. A single breach can ripple across supply chains, turn a software flaw into leverage, or shift who holds the upper hand. For leaders, this means defense isn’t just a matter of firewalls and patches—it’s about strategy. The strongest organizations […]

Insights from 160 million attack simulations

Security Information and Event Management (SIEM) systems serve as the primary tool for detecting suspicious activity in enterprise networks and helping organizations identify and respond to potential attacks in real time. However, the new Picus Blue Report 2025, based on over 160 million real-world attack simulations, reveals that organizations are detecting only one of seven […]

wpChatIcon
wpChatIcon