Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > APT
#APT

State-Sponsored UAT-4356 Deploys FIRESTARTER Backdoor on Cisco Firepower Devices via Chained N-Day Vulnerabilities

26 April 2026  |  dark6  |  Malware

Cisco Talos has uncovered an active espionage campaign by state-sponsored group UAT-4356, which chains two Cisco Firepower FXOS vulnerabilities (CVE-2025-20333 and CVE-2025-20362) to deploy the FIRESTARTER backdoor —...

>> read more

CERT-UA Exposes APT Malware Campaign Targeting Eastern European Governments and Municipal Hospitals

17 April 2026  |  dark6  |  Malware

Ukraine's CERT-UA has disclosed a sophisticated infostealer campaign targeting government bodies and municipal healthcare institutions across Eastern Europe. The malware harvests credentials from Chromium browsers and exfiltrates WhatsApp...

>> read more

MuddyWater-Linked APT Campaign Scanned 12,000+ Systems Before Striking Middle East Critical Infrastructure

16 April 2026  |  dark6  |  Malware

Iran-linked threat group MuddyWater is behind a sophisticated espionage campaign that scanned over 12,000 systems in the Middle East before stealing passport records and payroll data from an...

>> read more

Battlefield 6’s Rise Is Fueling a Surge of Malware: How Attackers are Capitalizing on the Hype

27 November 2025  |  dark6  |  Malware

Since its release this October, “Battlefield 6” has ignited gaming communities, with millions eagerly jumping into the action-packed experience. However, alongside the excitement comes a darker side –...

>> read more

ToddyCat’s new tricks: email hacking evolves with the cloud

24 November 2025  |  dark6  |  Malware

The age-old adage “if it ain’t broke, don’t fix it” doesn’t always hold true in cybersecurity. As attackers are increasingly leveraging cloud services to protect sensitive data, their...

>> read more

Akira: a CAPTCHA breach unravels enterprise security

19 November 2025  |  dark6  |  Ransomware

The recent escalation of attacks attributed to the Howling Scorpius ransomware group has highlighted a chillingly simple, yet devastatingly effective, entry vector. While often touted as the vanguard...

>> read more

WhatsApp’s silent threat: the screen-sharing scams

18 November 2025  |  dark6  |  Scams

The current wave of WhatsApp scams, fueled by the platform’s recently introduced screen-sharing feature, is a prime example. It’s a chilling demonstration of how a seemingly innocuous feature...

>> read more

Trojanized KeePass campaign: novel loader and credential theft in ransomware operations

14 May 2025  |  securebulletin.com  |  Malware

A recent investigation by WithSecure’s Threat Intelligence team has uncovered a sophisticated malware campaign leveraging a trojanized version of the open-source password manager KeePass. This operation, active for...

>> read more