Trojan:Win64/RustyStealer.DSK!MTB
Trojan:Win64/RustyStealer.DSK!MTB is a sophisticated malware designed to infiltrate 64-bit Windows systems, primarily focusing on stealing sensitive information such as login credentials, financial data, and personal details. It operates silently, making…
Threat Actor Behind X DDoS Attack Revealed
The X DDoS Attack, reported on March 10, 2025, caused significant outages, affecting tens of thousands of users. Baptiste Robert, a French security researcher, conducted an OSINT investigation and shared…
CISA Adds 5 Exploited Vulnerabilities, Patch ASAP
CISA recently updated its Known Exploited Vulnerabilities catalog, adding five vulnerabilities that are actively being exploited. These affect Advantive VeraCore, used for warehouse and order management in logistics, and Ivanti…
SmartLoader, LummaStealer Abuse Fake GitHub Repositories
A new campaign has been discovered where malicious actors are leveraging AI to craft fake GitHub repositories. They are used to spreading SmartLoader, a malware loader that installs LummaStealer, an…
Microsoft Account Locked
The "Microsoft Account Locked" scam is a deceptive tech support fraud. Users receive pop-up messages falsely claiming their Microsoft account is locked due to suspicious or illegal activities, such as…
Avoid Getting Locked Out Phishing Email
Avoid Getting Locked Out email scam is a phishing attack designed to exploit fear and urgency, tricking users into revealing their login credentials. As per usual, the message contains a…
Python JSON Logger Vulnerability Exposes Millions of Users
The CVE-2025-27607 vulnerability was discovered in Python JSON Logger. Its exploitation required no user interaction beyond a standard dependency installation. Attackers could hijack the package name, upload a malicious version,…
TrojanProxy:Win32/Acapaladat.B
TrojanProxy:Win32/Acapaladat.B is a type of malware that hides in free, unauthorized VPN applications, turning infected computers into proxy servers for cybercriminals. This allows attackers to mask their identities while conducting…
OneStart Browser
OneStart is a rogue program that is presented as a Chromium-based browser with AI features, such as a ChatGPT widget and a desktop toolbar, aiming to streamline access to various…
SpaceX Rocket Launch Scam
SpaceX Rocket Launch scam is a series of recurring malignant campaigns that throw people into crypto and other types of scams. Con actors leverage the massive popularity of SpaceX as…
VMWare ESXi Vulnerabilities Exploited, Patch Now
Broadcom has published a report on the discovery of three critical vulnerabilities in their recently acquired VMWare ESXi product lineup. These vulnerabilities allow attackers with local admin privileges on a…
Fox Ransomware
Fox Ransomware is believed to be a variant of the Dharma family, a notorious ransomware actor that encrypts user files and demands payment for decryption. The files affected by this…