In November 2024, South Korea faced a surge in Advanced Persistent Threats (APTs), with spear phishing being the most prevalent...
Spyware
Unmasking north korean IT workers targeting global tech sectors
24 September 2024 dark6
In today’s digital landscape, organizations face an escalating threat from cybersecurity attacks, leading to severe financial and reputational consequences. Cybersecurity...
Spyware
TeamTNT resurfaces: cybersecurity experts warn of new cloud server attacks
20 September 2024 dark6
The notorious hacking group TeamTNT has returned with a new campaign targeting Virtual Private Server (VPS) infrastructures running on the...
Spyware
Fileless Remcos RAT: a threat to watch out for in weaponized Excel documents
16 September 2024 dark6
Remcos, a Remote Access Trojan (RAT), has been actively used in cybercriminal campaigns since 2016. Recently, cybersecurity researchers have uncovered...
Earth Preta, the notorious Chinese Advanced Persistent Threat (APT) group, has been active for over a decade, targeting government entities,...
Spyware
Persistent backdoors via Linux pluggable authentication modules: a new threat
6 September 2024 dark6
Recent research by the Group-IB Digital Forensics and Incident Response (DFIR) team has revealed a novel technique exploiting Linux’s Pluggable...
Spyware
North Korean hackers targeting NPM packages
3 September 2024 dark6
In recent weeks, the cybersecurity landscape has witnessed a concerning uptick in malicious activities targeting developers through compromised NPM (Node...
Spyware
Escalating iranian cyber influence operations ahead of the 2024 US elections
11 August 2024 dark6
As the 2024 US presidential election looms, the Microsoft Threat Analysis Center (MTAC) has unveiled an alarming uptick in cyber-enabled...
Ransomware
SharpRhino: the emerging C# RAT from Hunters International
8 August 2024 dark6
In late 2023, the ransomware group Hunters International emerged on the cyber threat landscape, drawing attention due to their sophisticated...
Malware
Analysis of NetSupport RAT campaigns by Cisco Talos
8 August 2024 dark6
In recent months, Cisco Talos has heightened its monitoring efforts concerning malicious campaigns centered around the NetSupport Remote Access Trojan...
Malware
BlankBot: a rising threat in Android banking trojans
6 August 2024 dark6
A new Android banking trojan, identified as “BlankBot,” has emerged as a critical threat for mobile users, particularly targeting those...
Cybercrime
Evasive Panda’s infiltration of ISP systems
5 August 2024 dark6
In mid-2023, a security report from Volexity unveiled a significant cyber espionage campaign orchestrated by the Chinese hacking group known...