ThreatsDay: Malicious VS Code themes, npm supply-chain attacks, AI phishing, ransomware betrayal, exposed hacker tools, and ...
JPCERT/CC links Japan's recent data leaks to mobile API abuse and known software flaws, including an exploited Metabase SQL ...
TrendAI links UAC-0099 to ASHVEIN, a .NET stealer and RAT used in attacks targeting Ukrainian government personnel.
Attackers used ARTEX and LLMs against South Korean financial organizations in a campaign that resulted in data exfiltration.
Wazza filters visitors with session tokens and browser checks before serving Adobe-themed Device Code phishing pages.
Sixteen malicious Firefox extensions imitate Rabby and OKX wallets to intercept recovery phrases and private keys during ...
The U.S. offers up to $10 million for information that identifies or locates Zhang Yu, charged over the HAFNIUM Exchange hacks.
MonsterCloud's owner is accused of charging ransomware victims over $19 million while secretly paying attackers over $8 ...
Malicious tensorlake npm version 0.5.144 contained a Shai-Hulud worm that harvests credentials and can republish compromised ...
The crooks have trust problems of their own. One ransomware affiliate decided to keep the profits for himself. Elsewhere, an attacker left a server exposed, complete with tools and traces of an ...
Eight malicious npm packages downloaded 40,767 times deliver Overlord RAT, a Node.js stealer, and a downloader to Windows ...
SonicWall fixed four SMA1000 flaws, including a 10.0-rated SSRF reachable before authentication; it says none are known to be ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results