Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Cybersecurity researchers have unpacked JSCeal , a sophisticated compiled V8 JavaScript (JSC) malware with credential harvesting, surveillance, and traffic-interception capabilities. "The payloads are protected with javascript-obfuscator , using multiple techniques including RC4-protected strings, control-flow flattening, proxy functions, and operation wrappers," Check Point Research said in a technical report published last week.
Last week on Malwarebytes Labs: The hidden work of modernizing Malwarebytes X Money rollout linked to password-reset attacks Free streaming boxes may be routing criminal traffic through your home StreamRat Android malware spreads through Meta and TikTok ads Your phone or computer may soon ask how old you are Tech support scams look different now. Here’s what to watch for Scammers are getting smarter about where they target you Two critical Chrome flaws put users at risk on malicious websites 153M+ driver’s licenses for sale on new dark web platform Your AI chats could be used in court Fake GTA 6 leaked copy drains your crypto wallet TerminalFix looks like ClickFix, but delivers a very different payload Infostealers are hijacking Claude accounts at users’ expense McKesson confirms cyber incident after ShinyHunters claims patient-data theft Stay safe!
N-able has released an emergency hotfix for a maximum-severity remote code execution (RCE) flaw affecting its N-central remote monitoring and management (RMM) platform.
Multiple vulnerabilities were identified in Aruba Products. A remote attacker could exploit these vulnerabilities to trigger security restriction bypass, denial of service condition, cross-site scripting, sensitive information disclosure, elevation of privilege and remote code execution on the targeted system.
OpenAI is now rolling out ChatGPT Astra, its most powerful model to date, to those with a $20 Plus subscription, but there's no word on when free users will get access..
Sophos researchers dissect a PHP web server rootkit that modifies legitimate PHP files on compromised servers. The rootkit maintains persistence by hooking into PHP execution flow and can evade detection by common security tools.