From HealthKick to GOVERSHELL: The Evolution of UTA0388’s Espionage Malware

09/10/2025 0 Comments 0 tags

A China-aligned threat actor codenamed UTA0388 has been attributed to a series of spear-phishing campaigns targeting North America, Asia, and Europe that are designed to deliver a Go-based implant known

New ClayRat Spyware Targets Android Users via Fake WhatsApp and TikTok Apps

09/10/2025 0 Comments 0 tags

A rapidly evolving Android spyware campaign called ClayRat has targeted users in Russia using a mix of Telegram channels and lookalike phishing websites by impersonating popular apps like WhatsApp, Google

ThreatsDay Bulletin: MS Teams Hack, MFA Hijacking, $2B Crypto Heist, Apple Siri Probe & More

09/10/2025 0 Comments 0 tags

Cyber threats are evolving faster than ever. Attackers now combine social engineering, AI-driven manipulation, and cloud exploitation to breach targets once considered secure. From communication platforms to connected devices, every

Hackers Access SonicWall Cloud Firewall Backups, Spark Urgent Security Checks

09/10/2025 0 Comments 0 tags

SonicWall on Wednesday disclosed that an unauthorized party accessed firewall configuration backup files for all customers who have used the cloud backup service. “The files contain encrypted credentials and configuration

SaaS Breaches Start with Tokens – What Security Teams Must Watch

09/10/2025 0 Comments 0 tags

Token theft is a leading cause of SaaS breaches. Discover why OAuth and API tokens are often overlooked and how security teams can strengthen token hygiene to prevent attacks. Most

From Phishing to Malware: AI Becomes Russia’s New Cyber Weapon in War on Ukraine

09/10/2025 0 Comments 0 tags

Russian hackers’ adoption of artificial intelligence (AI) in cyber attacks against Ukraine has reached a new level in the first half of 2025 (H1 2025), the country’s State Service for

Critical Exploit Lets Hackers Bypass Authentication in WordPress Service Finder Theme

09/10/2025 0 Comments 0 tags

Threat actors are actively exploiting a critical security flaw impacting the Service Finder WordPress theme that makes it possible to gain unauthorized access to any account, including administrators, and take

Hackers Exploit WordPress Sites to Power Next-Gen ClickFix Phishing Attacks

08/10/2025 0 Comments 0 tags

Cybersecurity researchers are calling attention to a nefarious campaign targeting WordPress sites to make malicious JavaScript injections that are designed to redirect users to sketchy sites. “Site visitors get injected

Chinese Hackers Weaponize Open-Source Nezha Tool in New Attack Wave

08/10/2025 0 Comments 0 tags

Threat actors with suspected ties to China have turned a legitimate open-source monitoring tool called Nezha into an attack weapon, using it to deliver a known malware called Gh0st RAT

LockBit, Qilin, and DragonForce Join Forces to Dominate the Ransomware Ecosystem

08/10/2025 0 Comments 0 tags

Three prominent ransomware groups DragonForce, LockBit, and Qilin have announced a new strategic ransomware alliance, once underscoring continued shifts in the cyber threat landscape. The coalition is seen as an