Ultime Notizie

Emerging DOGE Big Balls ransomware campaign leverages multi-stage tooling and BYOVD exploits
Ransomware

Emerging DOGE Big Balls ransomware campaign leverages multi-stage tooling and BYOVD exploits

10 May 2025 securebulletin.com

A recent analysis of newly discovered payloads linked to the DOGE Big Balls ransomware operation reveals a complex infection chain...
Malicious npm packages hijack macOS Cursor AI IDE
Vulnerability

Malicious npm packages hijack macOS Cursor AI IDE

9 May 2025 securebulletin.com

The Socket Threat Research Team has uncovered a sophisticated supply chain attack targeting macOS developers using the Cursor AI code...
Stealthy Linux backdoor leveraging residential proxies and NHAS reverse SSH
Vulnerability

Stealthy Linux backdoor leveraging residential proxies and NHAS reverse SSH

4 May 2025 securebulletin.com

A recently discovered Linux backdoor (SHA256: ea41b2bf1064efcb6196bb79b40c5158fc339a36a3d3ddee68c822d797895b4e) employs advanced evasion techniques to bypass detection while establishing persistent access via SOCKS5...
US indicts Black Kingdom ransomware operator: technical analysis of ProxyLogon exploitation and law enforcement response
Ransomware

US indicts Black Kingdom ransomware operator: technical analysis of ProxyLogon exploitation and law enforcement response

3 May 2025 securebulletin.com

The U.S. Department of Justice unsealed charges against Yemeni national Rami Khaled Ahmed (36) for deploying Black Kingdom ransomware via...
Sophisticated npm malware campaign exploits Cross-Ecosystem typosquatting
Malware

Sophisticated npm malware campaign exploits Cross-Ecosystem typosquatting

3 May 2025 securebulletin.com

A coordinated malware operation targeting npm employs cross-ecosystem typosquatting to mimic popular libraries from Python, Java, C++, and .NET ecosystems....
Dismantling “764”: inside the takedown of a sophisticated child exploitation network
Cybercrime

Dismantling “764”: inside the takedown of a sophisticated child exploitation network

1 May 2025 securebulletin.com

In a significant development for cybersecurity and child protection efforts, law enforcement agencies have successfully apprehended two key figures allegedly...
Hijacking Trust: how Gmail and Google APIs are being weaponized for stealthy C2 channels
Spyware

Hijacking Trust: how Gmail and Google APIs are being weaponized for stealthy C2 channels

1 May 2025 securebulletin.com

In the ever-evolving landscape of cybersecurity, attackers are increasingly exploiting trusted services to establish covert command-and-control (C2) channels. By leveraging...
Kintetsu World Express ransomware attack: technical overview and response
Ransomware

Kintetsu World Express ransomware attack: technical overview and response

30 April 2025 securebulletin.com

Kintetsu World Express (KWE), a major Japanese global logistics provider, has confirmed a significant ransomware attack that began impacting its...
JFL Hospital targeted in ransomware attack amid wave of cyber incidents in US Virgin Islands
Ransomware

JFL Hospital targeted in ransomware attack amid wave of cyber incidents in US Virgin Islands

29 April 2025 securebulletin.com

Governor Juan F. Luis Hospital & Medical Center (JFL) in the US Virgin Islands has become the latest government entity...
SuperCard X: exposing a MaaS for NFC Relay fraud operation
Malware

SuperCard X: exposing a MaaS for NFC Relay fraud operation

20 April 2025 securebulletin.com

The Cleafy Threat Intelligence team has uncovered SuperCard X, a sophisticated Android malware campaign leveraging NFC-relay attacks to authorize fraudulent...
MITRE Signals Critical Risk to CVE Program as Federal Funding Expires
Vulnerability

MITRE Signals Critical Risk to CVE Program as Federal Funding Expires

15 April 2025 securebulletin.com

The cybersecurity world faces a significant challenge as the Common Vulnerabilities and Exposures (CVE) program, a cornerstone of global vulnerability...
Malicious NPM packages targeting PayPal users: a recap analysis
Malware

Malicious NPM packages targeting PayPal users: a recap analysis

12 April 2025 securebulletin.com

FortiGuard Labs recently uncovered a series of malicious NPM packages designed to steal sensitive information from compromised systems. These packages,...