Security News

Mustang Panda Deploys Advanced Malware to Spy on Asia-Pacific Governments
2024-09-10 09:57

The threat actor tracked as Mustang Panda has refined its malware arsenal to include new tools in order to facilitate data exfiltration and the deployment of next-stage payloads, according to new...

Chinese hackers use new data theft malware in govt attacks
2024-09-09 19:19

New attacks attributed to China-based cyber espionage group Mustang Panda show that the threat actor switched to new strategies and malware called FDMTP and PTSOCKET to download payloads and steal...

New Android SpyAgent Malware Uses OCR to Steal Crypto Wallet Recovery Keys
2024-09-09 08:50

Android device users in South Korea have emerged as a target of a new mobile malware campaign that delivers a new type of threat dubbed SpyAgent. The malware "targets mnemonic keys by scanning for...

North Korean Threat Actors Deploy COVERTCATCH Malware via LinkedIn Job Scams
2024-09-07 07:28

Threat actors affiliated with North Korea have been observed leveraging LinkedIn as a way to target developers as part of a fake job recruiting operation. These attacks employ coding tests as a...

SpyAgent Android malware steals your crypto recovery phrases from images
2024-09-06 15:17

A new Android malware named SpyAgent uses optical character recognition (OCR) technology to steal cryptocurrency wallet recovery phrases from screenshots stored on the mobile device. [...]

GeoServer Vulnerability Targeted by Hackers to Deliver Backdoors and Botnet Malware
2024-09-06 15:14

A recently disclosed security flaw in OSGeo GeoServer GeoTools has been exploited as part of multiple campaigns to deliver cryptocurrency miners, botnet malware such as Condi and JenX, and a known...

Fake OnlyFans cybercrime tool infects hackers with malware
2024-09-05 09:15

Hackers are targeting other hackers with a fake OnlyFans tool that claims to help steal accounts but instead infects threat actors with the Lumma stealer information-stealing malware. [...]

Malware Attackers Using MacroPack to Deliver Havoc, Brute Ratel, and PhantomCore
2024-09-05 07:45

Threat actors are likely employing a tool designated for red teaming exercises to serve malware, according to new findings from Cisco Talos. The program in question is a payload generation...

New Cross-Platform Malware KTLVdoor Discovered in Attack on Chinese Trading Firm
2024-09-05 05:03

The Chinese-speaking threat actor known as Earth Lusca has been observed using a new backdoor dubbed KTLVdoor as part of a cyber attack targeting an unnamed trading company based in China. The...

Hackers Use Fake GlobalProtect VPN Software in New WikiLoader Malware Attack
2024-09-04 05:31

A new malware campaign is spoofing Palo Alto Networks' GlobalProtect VPN software to deliver a variant of the WikiLoader (aka WailingCrab) loader by means of a search engine optimization (SEO)...