Secure Bulletin Navigating the cyber sea with knowledge
Home
Latest news

Stealth malware strikes WordPress via MU-Plugins: a technical deep dive

30 March 2025  |  securebulletin.com  |  Malware

The Sucuri research team has recently uncovered a concerning trend: threat actors are increasingly leveraging the WordPress mu-plugins directory to conceal malicious code. This tactic1 is particularly insidious...

>> read more

New breed of Android malware leverages .NET MAUI to slip past defenses

25 March 2025  |  securebulletin.com  |  Malware

Exploiting cross-platform development frameworks to deliver insidious malware. A recent report from McAfee highlights the emergence of Android malware campaigns that are leveraging the .NET MAUI framework to...

>> read more

Mamona ransomware group compromised: DragonForce exploits OPSEC failures

20 March 2025  |  securebulletin.com  |  Ransomware

The cybersecurity landscape is once again witnessing the fallout of poor operational security (OPSEC) among ransomware operators. In the latest turn of events, Mamona, a ransomware group rebranded...

>> read more

Western Alliance Bank data breach: 21,899 customers impacted

18 March 2025  |  securebulletin.com  |  Ransomware

The recent data breach at Western Alliance Bank underscores a growing concern in the cybersecurity landscape: the risks posed by third-party software vulnerabilities. This incident not only highlights...

>> read more

MassJacker malware targets cryptocurrency of piracy users

14 March 2025  |  securebulletin.com  |  Malware

A new and sophisticated malware campaign, known as MassJacker, has been uncovered by cybersecurity researchers at CyberArk. This malware targets users who download pirated software, particularly from websites...

>> read more

New Android spyware “KoSpy” linked to North Korean APT37

13 March 2025  |  securebulletin.com  |  Spyware

A new Android spyware, dubbed “KoSpy,” has been discovered by researchers at Lookout, adding another concerning tool to the arsenal of North Korean threat actors. This spyware, attributed...

>> read more

The Ballista Botnet: a new IoT threat with italian roots

11 March 2025  |  securebulletin.com  |  Malware

Cato Networks has uncovered a sophisticated IoT botnet, dubbed Ballista, targeting TP-Link Archer routers by exploiting a two-year-old vulnerability (CVE-2023-1389). This threat, linked to an Italian threat actor,...

>> read more

Akira ransomware’s ingenious IoT gambit: when webcams become cyberweapons

9 March 2025  |  securebulletin.com  |  Ransomware

Akira group demonstrated how unsecured IoT devices can bypass enterprise-grade defenses. In a case analyzed by S-RM, attackers weaponized a vulnerable webcam to execute an end-run around EDR...

>> read more