Qilin Operators Imitate ScreenConnect Login Page to Deploy Ransomware and Gain Admin Access

4 days ago

In a recent cyberattack attributed to the Qilin ransomware group, threat actors successfully compromised a Managed Service Provider (MSP) by…

Operation HollowQuill Uses Malicious PDFs to Target Academic and Government Networks

4 days ago

A newly uncovered cyber-espionage campaign, dubbed Operation HollowQuill, has been identified as targeting academic, governmental, and defense-related networks in Russia…

Cisco AnyConnect VPN Server Vulnerability Allows Attackers to Trigger DoS

4 days ago

Cisco has disclosed a significant vulnerability in its AnyConnect VPN Server for Meraki MX and Z Series devices, allowing authenticated attackers to…

New Trinda Malware Targets Android Devices by Replacing Phone Numbers During Calls

4 days ago

Kaspersky Lab has uncovered a new version of the Triada Trojan, a sophisticated malware targeting Android devices. This variant has…

DarkCloud Stealer Uses Weaponized .TAR Archives to Target Organizations and Steal Passwords

4 days ago

A recent cyberattack campaign leveraging the DarkCloud stealer has been identified, targeting Spanish companies and local offices of international organizations…

SonicWall Firewall Vulnerability Enables Unauthorized Access

4 days ago

Researchers from Bishop Fox have successfully exploited CVE-2024-53704, an authentication bypass vulnerability that affects SonicWall firewalls. This critical flaw allows remote…

Russian Seashell Blizzard Targets Organizations Using Custom-Built Hacking Tools

4 days ago

Seashell Blizzard, also known as APT44, Sandworm, and Voodoo Bear, has emerged as a sophisticated adversary targeting critical sectors worldwide.…

EvilCorp and RansomHub Collaborate to Launch Worldwide Attacks on Organizations

4 days ago

EvilCorp, a sanctioned Russia-based cybercriminal enterprise, has been observed collaborating with RansomHub, one of the most active ransomware-as-a-service (RaaS) operations.…

AI-Powered Gray Bots Target Web Applications with Over 17,000 Requests Per Hour

4 days ago

Web applications are facing a growing challenge from "gray bots," a category of automated programs that exploit generative AI to…

New Web Skimming Attack Exploits Legacy Stripe API to Validate Stolen Card Data

4 days ago

A sophisticated web-skimming campaign has been discovered, leveraging a deprecated Stripe API to validate stolen credit card data before exfiltration.…