loader image
Microsoft Unveils New Tactics to Thwart AiTM Attacks

Microsoft has published new research outlining advanced defensive strategies to counter the growing threat of Adversary-in-the-Middle (AiTM) attacks, which are becoming increasingly prevalent in cloud-based enterprise environments. These attacks exploit proxy servers to intercept authentication flows, effectively bypassing multifactor authentication (MFA) through phishing-as-a-service platforms such as Evilginx. High-profile threat groups, including Storm-0485 and Star Blizzard, […]

Lumma Infostealer Takedown May Have Fallen Short

Efforts to dismantle the Lumma infostealer operation may not have fully succeeded, according to security industry updates. Despite previous actions targeted at disrupting the malware’s infrastructure, new activity suggests that Lumma remains operational. The infostealer, known for harvesting sensitive user data including credentials and financial information, continues to pose a threat to organizations and individuals. […]

Microsoft, CrowdStrike Unite to Map Cyber Threat Actors

Microsoft Corp. and CrowdStrike Holdings Inc. have partnered to streamline threat actor identification, addressing a long-standing issue in cybersecurity intelligence: inconsistent naming of malicious groups across vendors. The initiative, announced Monday, introduces a shared mapping tool that links adversary identifiers without enforcing a universal naming standard. The collaboration aims to reduce confusion caused by divergent […]

Vodafone Fined $51 Million by Germany Over Privacy

Germany’s data privacy regulator has imposed a €49 million ($51 million) fine on Vodafone for violations of the country’s data protection rules, citing failures in safeguarding customer data. The penalty follows an investigation into the telecom company’s handling of user information, which regulators determined did not comply with established privacy standards. The regulator noted that […]

UK Tax Authority Says Scammers Stole £47 Million

The U.K.’s tax authority disclosed that cybercriminals stole £47 million ($63 million) last year by compromising taxpayer accounts. His Majesty’s Revenue & Customs (HMRC) said the losses were the result of fraudsters hijacking online profiles, allowing them to redirect tax refunds and manipulate personal data for financial gain. The agency did not specify how the […]

Chaos RAT Tool Hits Linux in Wave of New Attacks

An open-source remote access trojan known as Chaos RAT has been observed in recent cyberattacks targeting Linux systems, according to security researchers. The free tool provides attackers with capabilities such as reverse shell access, file management, and remote command execution, making it a versatile weapon in malicious campaigns. Chaos RAT, short for Remote Administration Tool, […]

CISA Leads Global Push to Shield Network Edge Devices

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), along with cybersecurity authorities from nine allied nations, has released a series of detailed guidelines to shield network edge devices from advanced cyber threats. These edge devices—such as firewalls, VPN gateways, and routers—are increasingly being exploited by threat actors, including state-sponsored groups. The guidance includes four technical […]

North Korean Hackers Target Firms With Fake Zoom Apps

North Korean hackers target firms by deploying fake Zoom applications to hijack systems through deceptive video conferencing setups. The attackers use LinkedIn to pose as business professionals, initiating contact under the guise of legitimate investment or partnership inquiries. Once trust is established, the attackers invite victims to meetings hosted on spoofed domains resembling Zoom infrastructure, […]

North Korea Hacks Devs via Fake npm Job Interviews

A new wave of North Korea hacks devs through a deceptive campaign that uses fake job interviews and malicious npm packages. Security researchers have identified 35 compromised packages uploaded to the npm repository, which deliver infostealers and backdoors to developers’ systems. These tools collect sensitive information and open unauthorized access points. Labeled the “Contagious Interview” […]

Phishing Kits Go Retail as Cybercrime Turns Subscription

Cybercriminals are increasingly adopting a subscription-based model known as Phishing-as-a-Service (PhaaS), lowering the barrier to entry for launching sophisticated phishing attacks. Mirroring legitimate SaaS platforms, PhaaS kits—often sold on the dark web—offer pre-built templates, spoofed email tools, credential-harvesting sites, and real-time dashboards for tracking campaign success. These services enable even novice attackers to mimic trusted […]

Google Patches 34 Critical Flaws in Android Update

Google has released its June 2025 Android security update, addressing 34 high-severity vulnerabilities across the platform. According to the company, the most critical flaw impacts the Android system and could allow attackers to locally escalate privileges on affected devices. The update targets multiple components, aiming to mitigate risks that could compromise user data and device […]

Android Malware Loaders Defeat Google’s New Defenses

Cybercriminals are successfully bypassing Android 13’s security improvements by leveraging malware loaders to exploit accessibility services, according to new threat intelligence from Intel471. Google introduced the restrictions to block sideloaded apps from gaining accessibility access—often abused by banking trojans—but attackers have adapted using session-based package installers to evade these controls. One such loader, TiramisuDropper, has […]