104 articles
Researchers have detected a four-stage infection chain that uses ScreenConnect to compromise systems through malicious scripts.
The group FulcrumSec claims to have stolen 86 GB of data from Manchester Airports Group, revealing sensitive passenger and booking information.
A supply chain attack is turning Android-based automotive multimedia systems into part of a botnet, putting driver security at risk.
We analyze AmnesiaStealer, a macOS malware that enables remote browser control and puts user privacy at risk.
A maximum-severity vulnerability in Metabase allows remote attackers to execute arbitrary SQL code. Update your system immediately.
We analyze the sophisticated spear-phishing attack that uses the HollowFrame loader to deploy advanced malware in corporate environments.
CISA has confirmed active exploitation of a vulnerability in Cisco FMC. Learn about the security risks and how to protect your enterprise infrastructure.
A severe flaw in Ruflo allows for remote code execution, exposing users to unprecedented security risks within their AI agents.
Companies in the U.S. are facing active attacks following the discovery of a critical remote code execution vulnerability in the Java library FastJson.
We analyze how the Cruciferra group uses advanced BYOVD and Process Ghosting techniques to evade security and deploy malware on Windows systems.
The SourTrade campaign redefines malvertising by forcing the user's browser to assemble malware piece by piece, bypassing traditional detection methods.
The BlueNoroff group uses fake Zoom domains to profile crypto wallets and deploy advanced malware through social engineering techniques.
Questions, suggestions or proposals — write to us and we will respond.
We received your message. We will respond as soon as possible.