TeamTNT has developed a new cryptominer for Monero, targeting exposed Docker daemon APIs as usual.The miner features extensive scanning capabilities,…
News
A new version of the PoetRAT is currently being deployed against Azerbaijani organizations.The actors are targeting high-profile entities as well…
Microsoft has seized the control points of Trickbot that were hosted by US-based companies.This disrupted the botnet’s operation in the…
An investigation against FinFisher has been initiated as the company’s tools were deployed outside Germany.Legally, the firm would have to…
Emotet actors are now sending emails that inform users of a supposed Microsoft Word update.The messages urge the recipients to…
Microsoft has taken additional actions against Trickbot, taking down most of its servers.The operators of Trickbot attempted to set up…
Google has removed 21 adware apps that were packed with the “HiddenAds” malware.The malware can load ads outside of the…
A new malware named “Gitpaste-12” was discovered on GitHub three months after its settlement.The botnet can exploit 11 known and…
A new malware discovered on the NPM space was there for five months already, amassing one hundred downloads.The package is…
A new version of the CRAT malware is out, and it comes with additional plugins and obfuscation.It appears that Lazarus…
“Malsmoke” continues to plague adult sites even months after it was first reported.The actors behind the malvertising campaign have now…
Two men in Romania were arrested for running malware crypting and AV scanning platforms.Their services were used extensively by underground…
Fake Minecraft “modpack” apps on the Play Store are infecting users with adware.The adware comes with activation time delays, and…
“Bandook” is back and getting widely deployed in the wild, targeting entities in at least eight countries.The main infection vector…
German internet users are getting tricked into downloading ZIP files on mimicked forum sites.The actors are pushing the GootKit banking…
The group of Gaza-based hackers known as “Molerats” has refreshed its toolset with two new backdoors. The actors are targeting…
Microsoft warns about a stealthy ad-serving malware that has spread extensively.The malware called “Adrozek” is changing browser settings and installs…
One of the most active backdoor communication domains for “Sunburst” was turned into a kill-switch.This doesn’t stop the malware just…
“Sunburst” has also hit the U.S. NNSA, but the extent of the damage is impossible to estimate yet.The neuralgic federal…





