Transparent Tribe Targets Indian Govt With Weaponized Desktop Shortcuts via Phishing

25/08/2025 0 Comments 0 tags

The advanced persistent threat (APT) actor known as Transparent Tribe has been observed targeting both Windows and BOSS (Bharat Operating System Solutions) Linux systems with malicious Desktop shortcut files in

Malicious Go Module Poses as SSH Brute-Force Tool, Steals Credentials via Telegram Bot

24/08/2025 0 Comments 0 tags

Cybersecurity researchers have discovered a malicious Go module that presents itself as a brute-force tool for SSH but actually contains functionality to discreetly exfiltrate credentials to its creator. “On the

GeoServer Exploits, PolarEdge, and Gayfemboy Push Cybercrime Beyond Traditional Botnets

23/08/2025 0 Comments 0 tags

Cybersecurity researchers are calling attention to multiple campaigns that leverage known security vulnerabilities and expose Redis servers to various malicious activities, including leveraging the compromised devices as IoT botnets, residential

Linux Malware Delivered via Malicious RAR Filenames Evades Antivirus Detection

22/08/2025 0 Comments 0 tags

Cybersecurity researchers have shed light on a novel attack chain that employs phishing emails to deliver an open-source backdoor called VShell. The “Linux-specific malware infection chain that starts with a

INTERPOL Arrests 1,209 Cybercriminals Across 18 African Nations in Global Crackdown

22/08/2025 0 Comments 0 tags

INTERPOL on Friday announced that authorities from 18 countries across Africa have arrested 1,209 cybercriminals who targeted 88,000 victims. “The crackdown recovered $97.4 million and dismantled 11,432 malicious infrastructures, underscoring

Chinese Hackers Murky, Genesis, and Glacial Panda Escalate Cloud and Telecom Espionage

22/08/2025 0 Comments 0 tags

Cybersecurity researchers are calling attention to malicious activity orchestrated by a China-nexus cyber espionage group known as Murky Panda that involves abusing trusted relationships in the cloud to breach enterprise

Automation Is Redefining Pentest Delivery

22/08/2025 0 Comments 0 tags

Pentesting remains one of the most effective ways to identify real-world security weaknesses before adversaries do. But as the threat landscape has evolved, the way we deliver pentest results hasn’t

Ex-Developer Jailed Four Years for Sabotaging Ohio Employer with Kill-Switch Malware

22/08/2025 0 Comments 0 tags

A 55-year-old Chinese national has been sentenced to four years in prison and three years of supervised release for sabotaging his former employer’s network with custom malware and deploying a

Pre-Auth Exploit Chains Found in Commvault Could Enable Remote Code Execution Attacks

21/08/2025 0 Comments 0 tags

Commvault has released updates to address four security gaps that could be exploited to achieve remote code execution on susceptible instances. The list of vulnerabilities, identified in Commvault versions before

Cybercriminals Deploy CORNFLAKE.V3 Backdoor via ClickFix Tactic and Fake CAPTCHA Pages

21/08/2025 0 Comments 0 tags

Threat actors have been observed leveraging the deceptive social engineering tactic known as ClickFix to deploy a versatile backdoor codenamed CORNFLAKE.V3. Google-owned Mandiant described the activity, which it tracks as