loader image
AsyncRAT Evades Detection With Stealthy Fileless Attack

A surge in fileless malware campaigns has brought renewed attention to AsyncRAT, a remote access trojan that exploits trusted system tools to launch in-memory attacks. By avoiding traditional disk writes, AsyncRAT evades detection and enables threat actors to maintain control over compromised enterprise systems with minimal forensic trace. Attackers gain initial access by abusing unauthorized […]

China Used Egg-Themed Malware to Hack Philippines

Cybersecurity researchers have uncovered a sophisticated cyberattack campaign targeting the Philippines, allegedly orchestrated by China using egg-themed malware. The operation, dubbed “EggStreme,” deployed in-memory malware crafted to evade detection while offering attackers a dynamic set of capabilities. Analysts say the malware’s unusual ovoid theme serves both as a signature and a distraction, cloaking its malicious […]

CISA Flags Linux, TP-Link, Sitecore in Threat Catalog

The Cybersecurity and Infrastructure Security Agency has updated its Known Exploited Vulnerabilities catalog to include critical flaws in Sitecore, the Linux Kernel, and TP-Link devices. The latest additions signal growing concern over actively exploited threats in popular software and hardware platforms. As part of the update, CISA flags Linux kernel vulnerabilities as a priority for […]

AI Threat Tools Cut Cloud Noise, Sharpen DevOps Focus

AI-driven threat validation is reshaping cloud security by reducing unnecessary alerts and streamlining responses. By incorporating AI Threat Tools Cutnaturally, organizations can cut through Cloud-Native Application Protection Platform (CNAPP) noise and zero in on the most critical risks. This targeted approach allows security teams to act faster and with greater precision. Cloud-native environments, while agile, […]

Salesloft, Drift Breach Tied to GitHub, OAuth Theft

Hackers breached the systems of Salesloft and Drift after compromising GitHub repositories and stealing OAuth tokens, according to a report detailing the Salesloft Drift breach. The attackers gained unauthorized access by targeting developer credentials, enabling them to exploit the companies’ integration tools. The incident involved the abuse of OAuth tokens issued to third-party applications connected […]

Maritime Cyberattacks Surge Amid GPS Spoofing Threat

Cyberattacks targeting global maritime operations have surged, with over 100 incidents linked to nation-state actors, ransomware groups, and hacktivists, according to new findings from cybersecurity firm Cyble. As maritime cyberattacks surge amid rising geopolitical tensions, adversaries are exploiting critical weaknesses in ships, ports, and offshore systems, forcing the industry to confront resilience and visibility gaps. […]

Hackers Use SAP Flaw to Breach Linux, Plant Malware

Hackers used an SAP flaw to breach a U.S.-based chemicals company’s network in April 2025, exploiting a now-patched vulnerability in SAP NetWeaver. The attackers deployed the Auto-Color backdoor on Linux systems over a three-day period, gaining unauthorized access and attempting to download suspicious files. The intrusion involved direct communication with malicious infrastructure linked to the […]

Microsoft Unveils AI Defenses for Prompt Injection Attacks

Microsoft unveiled a multi-layered security framework to address rising threats from indirect prompt injection attacks on generative AI systems. In a detailed strategy, Microsoft unveils AI defenses that combine hardened prompts, detection tools, and mitigation layers to safeguard large language model (LLM) applications in enterprise settings. These attacks, which embed malicious instructions within external data, […]

Lionishackers Sell Stolen Corporate Data on Dark Web

A cybercrime group known as Lionishackers has rapidly gained notoriety for infiltrating corporate databases and marketing stolen information on dark web forums and Telegram. Primarily targeting organizations in Asia, the group uses automated SQL injection tools to breach vulnerable systems. Lionishackers sell stolen data directly, bypassing traditional ransomware tactics in favor of monetizing raw records. […]

APT Hackers Target Ships With Ransomware in Escalation

Advanced persistent threat groups have escalated cyberattacks on the maritime industry, exploiting its global trade significance to deploy ransomware. APT hackers target ships through a blend of espionage and destructive tactics, aiming to cripple operations and demand ransom. Analysts have tracked over 100 attacks on maritime and shipping firms in the past year, marking a […]

CrushFTP Zero-Day Flaw Exposes Servers to Full Takeover

A critical CrushFTP Zero-Day Flaw has exposed servers to unauthenticated remote code execution, security researchers warned this week. Tracked as CVE-2025-54309 and scoring 9.8 on the CVSS scale, the vulnerability stems from improper request handling by CrushFTP’s DMZ proxy, which fails to enforce authentication on sensitive admin endpoints. Attackers can exploit this flaw by sending […]

Palo Alto Buys CyberArk in $25 Billion Identity Bet

Palo Alto Networks has announced plans to acquire identity security firm CyberArk in a $25 billion deal, marking its largest acquisition to date. With this move, Palo Alto buys CyberArk to strengthen its capabilities in identity security, a rapidly growing segment within the cybersecurity sector. The acquisition signals Palo Alto Networks’ strategic shift beyond its […]