Security News

CERT-UA Warns: Dark Crystal RAT Targets Ukrainian Defense via Malicious Signal Messages
2025-03-20 06:08

The Computer Emergency Response Team of Ukraine (CERT-UA) is warning of a new campaign that targets the defense sectors with Dark Crystal RAT (aka DCRat). The campaign, detected earlier this...

Hackers Exploit Severe PHP Flaw to Deploy Quasar RAT and XMRig Miners
2025-03-19 15:52

Threat actors are exploiting a severe security flaw in PHP to deliver cryptocurrency miners and remote access trojans (RATs) like Quasar RAT. The vulnerability, assigned the CVE identifier...

Microsoft Warns of StilachiRAT: A Stealthy RAT Targeting Credentials and Crypto Wallets
2025-03-18 07:00

Microsoft is calling attention to a novel remote access trojan (RAT) named StilachiRAT that it said employs advanced techniques to sidestep detection and persist within target environments with an...

Microsoft: New RAT malware used for crypto theft, reconnaissance
2025-03-17 18:59

​Microsoft has discovered a new remote access trojan (RAT) that employs "sophisticated techniques" to avoid detection, ensure persistence, and extract sensitive information data. [...]

ClickFix attack delivers infostealers, RATs in fake Booking.com emails
2025-03-13 15:00

Microsoft is warning that an ongoing phishing campaign impersonating Booking.com is using ClickFix social engineering attacks to infect hospitality workers with various malware, including...

Blind Eagle Hacks Colombian Institutions Using NTLM Flaw, RATs and GitHub-Based Attacks
2025-03-11 14:35

The threat actor known as Blind Eagle has been linked to a series of ongoing campaigns targeting Colombian institutions and government entities since November 2024. "The monitored campaigns...

Dark Caracal Uses Poco RAT to Target Spanish-Speaking Enterprises in Latin America
2025-03-05 13:37

The threat actor known as Dark Caracal has been attributed to a campaign that deployed a remote access trojan called Poco RAT in attacks targeting Spanish-speaking targets in Latin America in...

2,500+ Truesight.sys Driver Variants Exploited to Bypass EDR and Deploy HiddenGh0st RAT
2025-02-25 10:22

A large-scale malware campaign has been found leveraging a vulnerable Windows driver associated with Adlice's product suite to sidestep detection efforts and deliver the Gh0st RAT malware. "To...

Threat Actors Exploit ClickFix to Deploy NetSupport RAT in Latest Cyber Attacks
2025-02-11 09:55

Threat actors have observed the increasingly common ClickFix technique to deliver a remote access trojan named NetSupport RAT since early January 2025. NetSupport RAT, typically propagated via...

Researchers Expose NonEuclid RAT Using UAC Bypass and AMSI Evasion Techniques
2025-01-08 13:37

Cybersecurity researchers have shed light on a new remote access trojan called NonEuclid that allows bad actors to remotely control compromised Windows systems. "The NonEuclid remote access trojan...