Security News

Ripple NPM supply chain attack hunts for private keys
2025-04-23 18:28

A mystery thief and a critical CVE involved in crypto cash grab Many versions of the Ripple ledger (XRPL) official NPM package are compromised with malware injected to steal cryptocurrency.…

DPRK Hackers Steal $137M from TRON Users in Single-Day Phishing Attack
2025-04-23 17:09

Multiple threat activity clusters with ties to North Korea (aka Democratic People's Republic of Korea or DPRK) have been linked to attacks targeting organizations and individuals in the Web3 and...

Phishing detection is broken: Why most attacks feel like a zero day
2025-04-23 14:02

Phishing attacks now evade email filters, proxies, and MFA — making every attack feel like a zero-day. This article from Push Security breaks down why detection is failing and how real-time,...

Released: MITRE ATT&CK v17.0, now with ESXi attack TTPs
2025-04-23 12:52

MITRE has released the latest version of its ATT&CK framework, which now also includes a new section (“matrix”) to cover the tactics, techniques and procedures (TTPs) used to target VMware ESXi...

Three Reasons Why the Browser is Best for Stopping Phishing Attacks
2025-04-23 11:00

Phishing attacks remain a huge challenge for organizations in 2025. In fact, with attackers increasingly leveraging identity-based techniques over software exploits, phishing arguably poses a...

Ripple's xrpl.js npm Package Backdoored to Steal Private Keys in Major Supply Chain Attack
2025-04-23 07:17

The Ripple cryptocurrency npm JavaScript library named xrpl.js has been compromised by unknown threat actors as part of a software supply chain attack designed to harvest and exfiltrate users'...

Active! Mail RCE flaw exploited in attacks on Japanese orgs
2025-04-22 21:06

An Active! Mail zero-day remote code execution vulnerability is actively exploited in attacks on large organizations in Japan. [...]

Hackers abuse Zoom remote control feature for crypto-theft attacks
2025-04-22 19:43

A hacking group dubbed 'Elusive Comet' targets cryptocurrency users in social engineering attacks that exploit Zoom's remote control feature to trick users into granting them access to their...

SK Telecom warns customer USIM data exposed in malware attack
2025-04-22 18:26

South Korea's largest mobile operator, SK Telecom, is warning that a malware infection allowed threat actors to access sensitive USIM-related information for customers. [...]

Cookie-Bite attack PoC uses Chrome extension to steal session tokens
2025-04-22 15:02

A proof-of-concept attack called "Cookie-Bite" uses a browser extension to steal browser session cookies from Azure Entra ID to bypass multi-factor authentication (MFA) protections and maintain...