Malware

Keio Railway Confirms Ransomware Attack Disrupted Business Systems

Keio Corporation has confirmed that a ransomware attack has caused a system failure within parts of its group infrastructure, disrupting…

1 week ago

Lumma, RedLine and Vidar Infostealers Fuel Cloud Credential Theft Campaigns

Infostealer malware is increasingly becoming the bridge between a compromised developer workstation and an enterprise cloud environment, with Lumma, RedLine,…

1 week ago

Operation Conflict Compass Deploys VelvetCake PowerShell Malware Through Malicious LNK Files

North Korea-linked threat actor Konni has launched a targeted cyberespionage operation against Ukraine-focused entities using malicious Windows shortcut files disguised…

2 weeks ago

RemControl Android Malware Targets 30+ Banking Apps to Steal PINs and Credentials

A newly uncovered Android banking trojan dubbed RemControl is targeting customers of more than 30 financial institutions across Europe, the…

2 weeks ago

Exvicy ClickFix Malware-as-a-Service Copies ErrTraffic to Hijack WordPress Sites

A new Malware-as-a-Service platform, Exvicy, is actively abusing compromised WordPress websites to deliver ClickFix lures disguised as Cloudflare Turnstile verification…

2 weeks ago

Cybercriminals Abandon Domains but Keep the Hosting Networks Behind Malware Campaigns

Cybercriminals are rapidly rotating lure domains, cloud storage buckets and command-and-control channels, but one infrastructure component is proving far harder…

2 weeks ago

Fake TV Streaming Ads Deliver StreamRat Malware for Remote Android Device Hijacking

StreamRat, a newly identified Android banking trojan distributed through deceptive Meta and TikTok advertisements impersonating a free television-streaming service. The…

2 weeks ago

Linux BambooToken Malware Uses MQTT C2 for Remote Shell Access and File Exfiltration

A Linux variant of the BambooToken backdoor uses MQTT as its command-and-control channel, enabling operators to profile compromised hosts, execute…

2 weeks ago

10 Malicious npm Packages Linked to Runtime Malware Campaign With Millions of Downloads

A sophisticated npm supply-chain campaign has been linked to 10 malicious JavaScript packages that collectively recorded millions of downloads while…

2 weeks ago

AI-Powered RatHat Android Trojan Steals Bank Credentials, PINs and MFA Codes

Researchers have identified a new Android banking Trojan called RatHat that utilizes artificial intelligence to automate device compromise and steal…

3 weeks ago