Paper Werewolf Deploys PowerModul Implant in Targeted Cyberattacks on Russian Sectors

11/04/2025 0 Comments 0 tags

The threat actor known as Paper Werewolf has been observed exclusively targeting Russian entities with a new implant called PowerModul. The activity, which took place between July and December 2024,

Initial Access Brokers Shift Tactics, Selling More for Less

11/04/2025 0 Comments 0 tags

What are IABs? Initial Access Brokers (IABs) specialize in gaining unauthorized entry into computer systems and networks, then selling that access to other cybercriminals. This division of labor allows IABs

SpyNote, BadBazaar, MOONSHINE Malware Target Android and iOS Users via Fake Apps

11/04/2025 0 Comments 0 tags

Cybersecurity researchers have found that threat actors are setting up deceptive websites hosted on newly registered domains to deliver a known Android malware called SpyNote. These bogus websites masquerade as

Palo Alto Networks Warns of Brute-Force Attempts Targeting PAN-OS GlobalProtect Gateways

11/04/2025 0 Comments 0 tags

Palo Alto Networks has revealed that it’s observing brute-force login attempts against PAN-OS GlobalProtect gateways, days after threat actors warned of a surge in suspicious login scanning activity targeting its

OttoKit WordPress Plugin Admin Creation Vulnerability Under Active Exploitation

11/04/2025 0 Comments 0 tags

A newly disclosed high-severity security flaw impacting OttoKit (formerly SureTriggers) has come under active exploitation within a few hours of public disclosure. The vulnerability, tracked as CVE-2025-3102 (CVSS score: 8.1),

Incomplete Patch in NVIDIA Toolkit Leaves CVE-2024-0132 Open to Container Escapes

10/04/2025 0 Comments 0 tags

Cybersecurity researchers have detailed a case of an incomplete patch for a previously addressed security flaw impacting the NVIDIA Container Toolkit that, if successfully exploited, could put sensitive data at

Malicious npm Package Targets Atomic Wallet, Exodus Users by Swapping Crypto Addresses

10/04/2025 0 Comments 0 tags

Threat actors are continuing to upload malicious packages to the npm registry so as to tamper with already-installed local versions of legitimate libraries to execute malicious code in what’s seen

Europol Arrests Five SmokeLoader Clients Linked by Seized Database Evidence

10/04/2025 0 Comments 0 tags

Law enforcement authorities have announced that they tracked down the customers of the SmokeLoader malware and detained at least five individuals. “In a coordinated series of actions, customers of the

Gamaredon Uses Infected Removable Drives to Breach Western Military Mission in Ukraine

10/04/2025 0 Comments 0 tags

The Russia-linked threat actor known as Gamaredon (aka Shuckworm) has been attributed to a cyber attack targeting a foreign military mission based in Ukraine with an aim to deliver an

The Identities Behind AI Agents: A Deep Dive Into AI & NHI

10/04/2025 0 Comments 0 tags

AI agents have rapidly evolved from experimental technology to essential business tools. The OWASP framework explicitly recognizes that Non-Human Identities play a key role in agentic AI security. Their analysis