malware
Combating the Evolving Threat of SharkLoader Malware and Cobalt Strike Attacks
A new malware campaign, dubbed StrikeShark, is deploying a previously undocumented SharkLoader malware to deliver Cobalt Strike Beacon, posing a threat to government, diplomatic, and research organizations.
Popular Chrome Ad Blocker with 10M+ Installs Found Hiding a Dormant Script-Injection Capability
A popular Google Chrome ad blocking extension with over 10 million installs has been found to contain a dormant script injection capability, posing a significant security risk to users.
27M Stolen Credentials Recovered: How Law Enforcement Disrupted Amadey and StealC Malware Networks
A coordinated takedown of the Amadey and StealC malware families has resulted in the recovery of 27 million stolen credentials and a major blow to the cybercrime supply chain.
Fake AI Agent Slipped Past Security Checks, Reached 26,000 Users
A security firm built a harmless but deceptive AI agent skill that bypassed all security scans and reached thousands of users, exposing major vulnerabilities in popular skill marketplaces.
How IT Teams Can Defend Against the Dangerous OXLOADER Malware Loader
Cybersecurity researchers have uncovered a new malware loader called OXLOADER that uses malicious Google Ads to deliver the CastleStealer malware. Learn how IT teams can protect their organizations from this evolving threat.
How Crypto Malware Abused GitHub, YouTube, and VirusTotal to Steal Millions
Cybercriminals packaged malicious trading and gambling tools as legitimate money-makers, exploiting trust in popular platforms to distribute crypto-stealing malware.
How Operation Endgame Disrupted the Expansive SocGholish Malware Network
Operation Endgame took down over 100 servers and domains linked to the prolific SocGholish malware, a major win in the battle against ransomware attacks.
Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K Downloads
A malicious Hugging Face repository managed to take a spot in the platform's trending list by impersonating OpenAI's Privacy Filter open-weight model to deliver a Rust-based information stealer to Windows users. The project, named Open-OSS/privacy-filter, masqueraded as its legitimate counterpart released by OpenAI late last month (openai/privacy-filter), including copying the entire description
Developer workstations are the new beachhead
I spent the first week of April reading three separate threat intelligence reports that, on the surface, had nothing in common. One covered a North Korean campaign that had published over 1,700 malicious packages across five open-source ecosystems. Another detailed a malware operation using a Zig-compiled binary to silently infect every IDE on a developer’s machine. The third walked through…
After Replacing TeamPCP Malware, 'PCPJack' Steals Cloud Secrets
PCPJack makes innovative use of parquet files for stealthy, pre-validated target discovery as it canvasses multiple cloud environments.