Secure Bulletin Navigating the cyber sea with knowledge
Home
Latest news

Sophisticated npm malware campaign exploits Cross-Ecosystem typosquatting

3 May 2025  |  securebulletin.com  |  Malware

A coordinated malware operation targeting npm employs cross-ecosystem typosquatting to mimic popular libraries from Python, Java, C++, and .NET ecosystems. Attackers uploaded packages like beautifulsoup4 (masquerading as Python’s...

>> read more

Dismantling “764”: inside the takedown of a sophisticated child exploitation network

1 May 2025  |  securebulletin.com  |  Cybercrime

In a significant development for cybersecurity and child protection efforts, law enforcement agencies have successfully apprehended two key figures allegedly behind “764,” a highly organized online child exploitation...

>> read more

Hijacking Trust: how Gmail and Google APIs are being weaponized for stealthy C2 channels

1 May 2025  |  securebulletin.com  |  Spyware

In the ever-evolving landscape of cybersecurity, attackers are increasingly exploiting trusted services to establish covert command-and-control (C2) channels. By leveraging platforms like Gmail and Google Drive, threat actors...

>> read more

Kintetsu World Express ransomware attack: technical overview and response

30 April 2025  |  securebulletin.com  |  Ransomware

Kintetsu World Express (KWE), a major Japanese global logistics provider, has confirmed a significant ransomware attack that began impacting its operations in late April 2025. The incident has...

>> read more

JFL Hospital targeted in ransomware attack amid wave of cyber incidents in US Virgin Islands

29 April 2025  |  securebulletin.com  |  Ransomware

Governor Juan F. Luis Hospital & Medical Center (JFL) in the US Virgin Islands has become the latest government entity to suffer a cybersecurity breach, confirming a ransomware...

>> read more

SuperCard X: exposing a MaaS for NFC Relay fraud operation

20 April 2025  |  securebulletin.com  |  Malware

The Cleafy Threat Intelligence team has uncovered SuperCard X, a sophisticated Android malware campaign leveraging NFC-relay attacks to authorize fraudulent POS and ATM transactions. This Malware-as-a-Service (MaaS) operation1...

>> read more

MITRE Signals Critical Risk to CVE Program as Federal Funding Expires

15 April 2025  |  securebulletin.com  |  Vulnerability

The cybersecurity world faces a significant challenge as the Common Vulnerabilities and Exposures (CVE) program, a cornerstone of global vulnerability management, risks disruption due to expiring federal funding....

>> read more

Malicious NPM packages targeting PayPal users: a recap analysis

12 April 2025  |  securebulletin.com  |  Malware

FortiGuard Labs recently uncovered a series of malicious NPM packages designed to steal sensitive information from compromised systems. These packages, created between March 5 and March 14, were...

>> read more