CrashFix crashes browsers to coerce users into executing commands that deploy a Python RAT, abusing finger.exe and portable Python to evade detection and persist on high‑value systems.
How modern infostealers target macOS systems, leverage Python‑based stealers, and abuse trusted platforms and utilities to ...
Rapid7 links China-linked Lotus Blossom to a 2025 Notepad++ hosting breach that delivered the Chrysalis backdoor via hijacked updates, fixed in v8.8.9 ...
DEAD#VAX campaign delivers AsyncRAT via IPFS-hosted VHD phishing files, using fileless memory injection and obfuscated ...
A surge in LummaStealer infections has been observed, driven by social engineering campaigns leveraging the ClickFix technique to deliver the CastleLoader malware.
ESET researchers present technical details on a recent data destruction incident affecting a company in Poland’s energy sector.
The campaign exploits an Office vulnerability to deliver the modular XWorm RAT, chaining HTA, PowerShell, and in-memory .NET execution to sidestep detection and expand post-compromise control.
KB5074105 fixes a critical Windows 11 issue where Explorer.exe could freeze at first login, leaving users without a taskbar ...
Not all applications are created with remote execution in mind. PowerShell provides several ways to invoke applications on ...
The program is a free text and code editor that's been downloaded millions of times. The compromise began in June and is ...
Searching for the Angel Nuzhat viral MMS? Cyber experts warn it’s a Ghost File malware scam spreading via WhatsApp and Telegram in 2026. Here’s the full fact-check ...
Security researchers warn of active attacks on SolarWinds Web Help Desk. Malicious actors are exploiting vulnerabilities to infiltrate systems and then ...