State-sponsored cyberespionage is moving away from overt malware delivery toward “living off the cloud” and hiding … Covert Espionage: OilRig Exploits LSB Steganography and Google Drive for C2 Hidden in Plain SightRead more
fileless malware
ClickFix Attack Uses Cmdkey and Regsvr32 Payload
Social engineering attacks continue to evolve, and the latest ClickFix campaign shows just how far attackers … ClickFix Attack Uses Cmdkey and Regsvr32 PayloadRead more
DinDoor Backdoor Uses Deno Runtime to Evade Detection
A newly discovered backdoor named DinDoor is raising alarms in the cybersecurity community for one key … DinDoor Backdoor Uses Deno Runtime to Evade DetectionRead more
AppDomain Hijacking Attack Turns Intel Tool Into Malware Loader
What if your most trusted software became your biggest security risk? A newly uncovered campaign known … AppDomain Hijacking Attack Turns Intel Tool Into Malware LoaderRead more
SpankRAT Malware: Exploiting Explorer.exe for Stealth
Modern malware doesn’t just hide—it impersonates trust. A newly discovered threat, SpankRAT malware, is taking stealth … SpankRAT Malware: Exploiting Explorer.exe for StealthRead more
Fake Adobe Reader Download Attack: In-Memory ScreenConnect Threat
Cybercriminals no longer rely on noisy malware to breach systems—they’re going stealth. In early 2026, researchers … Fake Adobe Reader Download Attack: In-Memory ScreenConnect ThreatRead more
Google Cloud Phishing Attack Spreads Remcos RAT
Cybercriminals are increasingly abusing trusted cloud platforms, and a new campaign demonstrates just how dangerous this … Google Cloud Phishing Attack Spreads Remcos RATRead more
Fake Proxifier Installer on GitHub Spreads ClipBanker Crypto-Stealing Malware
Cryptocurrency users are increasingly being targeted by sophisticated malware campaigns that exploit trust in legitimate software … Fake Proxifier Installer on GitHub Spreads ClipBanker Crypto-Stealing MalwareRead more
APT37 Social Engineering Attack: Facebook, Telegram & Malware Chain
The APT37 social engineering attack marks a significant evolution in nation-state cyber operations—combining social media manipulation, … APT37 Social Engineering Attack: Facebook, Telegram & Malware ChainRead more
Copyright-Themed Lures Deliver Multi-Stage PureLog Stealer
A new credential theft campaign is leveraging copyright violation lures to distribute PureLog Stealer, a multi-stage … Copyright-Themed Lures Deliver Multi-Stage PureLog StealerRead more