Latest news

ToddyCat’s new tricks: email hacking evolves with the cloud
Malware

ToddyCat’s new tricks: email hacking evolves with the cloud

24 November 2025 dark6

The age-old adage “if it ain’t broke, don’t fix it” doesn’t always hold true in cybersecurity. As attackers are increasingly...
APT24: three years of obscure espionage with the “BadAudio” download
Malware

APT24: three years of obscure espionage with the “BadAudio” download

21 November 2025 dark6

For years, APT24, a sophisticated cyber espionage group linked to China’s People’s Republic, has been quietly crafting targeted attacks against...
Nova Stealer: macOS cryptocurrency theft
Malware

Nova Stealer: macOS cryptocurrency theft

19 November 2025 dark6

The cybersecurity landscape is consistently shaped by increasingly sophisticated threats, and the latest to garner significant attention is Nova Stealer...
The Payroll Pirates: a malvertising and layered attack infrastructure
Malware

The Payroll Pirates: a malvertising and layered attack infrastructure

18 November 2025 dark6

The “Payroll Pirates,” as Check Point researchers have dubbed them, represent a particularly insidious threat – a coordinated campaign targeting...
SmartApeSG: the persistent evolution of a ClickFix-based RAT campaign
Malware

SmartApeSG: the persistent evolution of a ClickFix-based RAT campaign

14 November 2025 dark6

The SmartApeSG campaign, previously identified by aliases like ZPHP and HANEY MANEY, continues to demonstrate a remarkable capacity for adaptation,...
Sophos exposes massive GitHub campaign distributing backdoored malware
Malware

Sophos exposes massive GitHub campaign distributing backdoored malware

4 June 2025 securebulletin.com

A sophisticated malware campaign targeting hackers, gamers, and cybersecurity researchers has been uncovered on GitHub, leveraging fake exploits, game cheats,...
Debunking OrbitShade: AI-Driven misinformation in Cyber Threat Intelligence
Malware

Debunking OrbitShade: AI-Driven misinformation in Cyber Threat Intelligence

30 May 2025 securebulletin.com

The recent public report dated April 29, 2025, alleging the existence of a state-sponsored malware named OrbitShade targeting satellite infrastructure...
Anatomy of the Winos 4.0 campaign
Malware

Anatomy of the Winos 4.0 campaign

25 May 2025 securebulletin.com

The Winos 4.0 campaign, as dissected by Rapid7, exemplifies the evolving sophistication of contemporary malware operations targeting Chinese-speaking environments. This...
Dero miner container infection campaign
Malware

Dero miner container infection campaign

21 May 2025 securebulletin.com

The recent campaign uncovered by Kaspersky, involving the Dero cryptocurrency miner spreading through containerized Linux environments by exploiting exposed Docker...
Trojanized KeePass campaign: novel loader and credential theft in ransomware operations
Malware

Trojanized KeePass campaign: novel loader and credential theft in ransomware operations

14 May 2025 securebulletin.com

A recent investigation by WithSecure’s Threat Intelligence team has uncovered a sophisticated malware campaign leveraging a trojanized version of the...
Sophisticated npm malware campaign exploits Cross-Ecosystem typosquatting
Malware

Sophisticated npm malware campaign exploits Cross-Ecosystem typosquatting

3 May 2025 securebulletin.com

A coordinated malware operation targeting npm employs cross-ecosystem typosquatting to mimic popular libraries from Python, Java, C++, and .NET ecosystems....
SuperCard X: exposing a MaaS for NFC Relay fraud operation
Malware

SuperCard X: exposing a MaaS for NFC Relay fraud operation

20 April 2025 securebulletin.com

The Cleafy Threat Intelligence team has uncovered SuperCard X, a sophisticated Android malware campaign leveraging NFC-relay attacks to authorize fraudulent...