loader image
Fake KeePass App Triggers ESXi Ransomware Assault

Threat actors have been distributing malicious versions of the KeePass password manager for at least eight months, according to cybersecurity researchers. These trojanized applications serve as a vehicle to infiltrate corporate networks, enabling attackers to install Cobalt Strike beacons, harvest user credentials, and ultimately deploy ransomware. The campaign specifically targets systems running VMware ESXi, a […]

Ransomware Gangs Deploy Skitnet for Silent Spying

Several ransomware groups have begun integrating a malware strain known as Skitnet into their post-exploitation toolkits, aiming to exfiltrate sensitive data and gain remote access to infected systems, according to Swiss cybersecurity firm PRODAFT. The malware has been available for purchase on underground forums such as RAMP since April 2024, but its use has grown […]

GhostSpy Android Malware Hijacks Phones, Evades Removal

A newly discovered Android malware known as GhostSpy is allowing threat actors to gain full control over infected devices, according to researchers at Cyfirma. The sophisticated Remote Access Trojan (RAT) uses a multi-stage infection chain that begins with a dropper app disguised as a legitimate update or system tool. Once installed, it escalates privileges and […]

Germany Names TrickBot, Conti Ringleader as Russian

Germany’s Federal Criminal Police Office (Bundeskriminalamt, or BKA) has identified the alleged leader of the notorious Conti ransomware and TrickBot cybercrime operations as Vitaly Nikolaevich Kovalev, a 36-year-old Russian national. The announcement marks a significant move by German authorities in their ongoing efforts to dismantle international ransomware networks. The BKA publicly named Kovalev, who is […]

Russian Spy Hacking Ops Exposed by Server Breach

A covert cyber unit within the Russian military has been exposed after an unsecured server linked to its operations was accessed by investigative journalists, according to a report from Cybernews. The server belonged to Unit 29155, a division of the Main Directorate of the General Staff of the Armed Forces, and reportedly contained sensitive information […]

Kettering Health Hit by Interlock Ransomware Attack

Kettering Health, a major healthcare provider operating 14 medical centers across Ohio, has confirmed that the Interlock ransomware group was responsible for a cyberattack that compromised its network in May. The organization reported that threat actors gained unauthorized access and exfiltrated data during the breach. The incident underscores ongoing cybersecurity challenges facing the healthcare sector, […]

2ClickPortal Software Hit by SQL Injection Flaw

A critical SQL injection vulnerability has been identified in the 2ClickPortal software, according to an advisory published by CERT Poland. The flaw, tracked as CVE-2025-4568, could allow attackers to manipulate backend databases by injecting malicious SQL code through user-facing input fields. Such vulnerabilities may be exploited to access, modify, or delete sensitive data without proper […]

Apple iMessage Flaw Let Hackers Spy With No Clicks

A previously undisclosed zero-click vulnerability in Apple’s iMessage platform has come to light, involving the misuse of its nickname feature, researchers revealed. The flaw, which has since been patched, may have been exploited to target high-profile individuals without requiring any user interaction, according to cybersecurity analysts. Zero-click exploits are particularly concerning due to their stealthy […]

Gargle Leak Exposes 2.7 Million U.S. Patient Records

Nearly 2.7 million patient profiles and 8.8 million appointment records in the United States were left exposed due to a misconfigured MongoDB database, according to a report by Cybernews. The unsecured database is believed to have been operated by Gargle, a U.S.-based dental marketing firm. The exposed data included sensitive health-related information, raising concerns about […]

Social Security Phish Hack Hits 2,000+ Devices

More than 2,000 devices were infected in a widespread Social Security Phish Hack campaign that used spoofed government-themed emails to distribute malware, according to a recent analysis by CyberArmor. Attackers crafted convincing phishing messages that redirected victims to fraudulent Social Security Administration (SSA) websites hosted on Amazon Web Services. These sites encouraged users to “Access […]

Mainline Health Breach Hits 100,000 in Ransom Attack

Mainline Health Systems, a nonprofit health provider in Southeast Arkansas, disclosed a cybersecurity incident that compromised the personal data of 101,104 individuals. The Mainline Health breach occurred on or around April 10, 2024, and targeted the organization’s network infrastructure. The company operates over 30 facilities, including school-based clinics and community health centers. Following the breach, […]

Met Police Plans £350 Million Apps Overhaul Tender

The Metropolitan Police Service has launched plans for a £350 million contract to manage its software applications over the next decade. The procurement, referred to in internal documents as part of the “two-tower” management model, signals a major overhaul in how the force oversees its digital systems. The Met Police plans £350 million in spending […]