Latest news

November 2024 APT attack trends in South Korea
Spyware

November 2024 APT attack trends in South Korea

9 December 2024 dark6

In November 2024, South Korea faced a surge in Advanced Persistent Threats (APTs), with spear phishing being the most prevalent...
Unmasking north korean IT workers targeting global tech sectors
Spyware

Unmasking north korean IT workers targeting global tech sectors

24 September 2024 dark6

In today’s digital landscape, organizations face an escalating threat from cybersecurity attacks, leading to severe financial and reputational consequences. Cybersecurity...
TeamTNT resurfaces: cybersecurity experts warn of new cloud server attacks
Spyware

TeamTNT resurfaces: cybersecurity experts warn of new cloud server attacks

20 September 2024 dark6

The notorious hacking group TeamTNT has returned with a new campaign targeting Virtual Private Server (VPS) infrastructures running on the...
Fileless Remcos RAT: a threat to watch out for in weaponized Excel documents
Spyware

Fileless Remcos RAT: a threat to watch out for in weaponized Excel documents

16 September 2024 dark6

Remcos, a Remote Access Trojan (RAT), has been actively used in cybercriminal campaigns since 2016. Recently, cybersecurity researchers have uncovered...
Preta Power: innovative tools empower cyber enhancement initiatives
Spyware

Preta Power: innovative tools empower cyber enhancement initiatives

10 September 2024 dark6

Earth Preta, the notorious Chinese Advanced Persistent Threat (APT) group, has been active for over a decade, targeting government entities,...
Persistent backdoors via Linux pluggable authentication modules: a new threat
Spyware

Persistent backdoors via Linux pluggable authentication modules: a new threat

6 September 2024 dark6

Recent research by the Group-IB Digital Forensics and Incident Response (DFIR) team has revealed a novel technique exploiting Linux’s Pluggable...
North Korean hackers targeting NPM packages
Spyware

North Korean hackers targeting NPM packages

3 September 2024 dark6

In recent weeks, the cybersecurity landscape has witnessed a concerning uptick in malicious activities targeting developers through compromised NPM (Node...
Escalating iranian cyber influence operations ahead of the 2024 US elections
Spyware

Escalating iranian cyber influence operations ahead of the 2024 US elections

11 August 2024 dark6

As the 2024 US presidential election looms, the Microsoft Threat Analysis Center (MTAC) has unveiled an alarming uptick in cyber-enabled...
SharpRhino: the emerging C# RAT from Hunters International
Ransomware

SharpRhino: the emerging C# RAT from Hunters International

8 August 2024 dark6

In late 2023, the ransomware group Hunters International emerged on the cyber threat landscape, drawing attention due to their sophisticated...
Analysis of NetSupport RAT campaigns by Cisco Talos
Malware

Analysis of NetSupport RAT campaigns by Cisco Talos

8 August 2024 dark6

In recent months, Cisco Talos has heightened its monitoring efforts concerning malicious campaigns centered around the NetSupport Remote Access Trojan...
BlankBot: a rising threat in Android banking trojans
Malware

BlankBot: a rising threat in Android banking trojans

6 August 2024 dark6

A new Android banking trojan, identified as “BlankBot,” has emerged as a critical threat for mobile users, particularly targeting those...
Evasive Panda’s infiltration of ISP systems
Cybercrime

Evasive Panda’s infiltration of ISP systems

5 August 2024 dark6

In mid-2023, a security report from Volexity unveiled a significant cyber espionage campaign orchestrated by the Chinese hacking group known...