Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
A phishing campaign discovered by FortiGuard Labs deploys a JavaScript-driven variant of PureLogs, a malware strain designed to steal sensitive data. Attackers use obfuscated JavaScript embedded in phishing emails to deliver PowerShell scripts, which then employ process hollowing to inject malicious code into legitimate processes.
The malware pairs remote access capabilities with ready-made campaign tools, lowering the barrier.
The malware pairs remote access capabilities with ready-made campaign tools, lowering the barrier for full device compromise
BTMOB: A stealthy RAT burrowing deep into Android devices. The malware pairs remote access capabilities with ready-made campaign tools, lowering the barrier for full device compromise.
The malware pairs remote access capabilities with ready-made campaign tools, lowering the barrier.
TrendAI™ Research analyzed an intrusion where threat actors used the EtherHiding technique to route ClearFake payload delivery through smart contracts on the BNB Smart Chain testnet. The attack chain ended with two simultaneously deployed stealers, SectopRAT and ACRStealer alongside an on-chain execution tracker that confirmed each victim compromise in real time.