Europol Arrests Five SmokeLoader Clients Linked by Seized Database EvidenceThe Hacker News·Apr 10, 09:55 UTC · Apr 10, 2025Malware42
Multi-Layered TDS Infrastructure Linked to Major Cyber ThreatsRecorded Future·Sep 5, 00:00 UTC · Sep 5, 2024Ransomware57
Akamai introduces new capabilities to simplify PCI DSS 4.0 compliance for organizationsHelp Net Security·Oct 3, 00:00 UTC · Oct 3, 2023Vulnerability42
Powerful JavaScript Dropper PindOS Distributes Bumblebee and IcedID MalwareThe Hacker News·Jun 23, 10:47 UTC · Jun 23, 2023Malware42
Hackers Using Fake DDoS Protection Pages to Distribute MalwareThe Hacker News·Aug 24, 17:35 UTC · Aug 24, 2022Malware42
25 Malicious JavaScript Libraries Distributed via Official NPM Package RepositoryThe Hacker News·Feb 23, 06:30 UTC · Feb 23, 2022Malware42
Check What Information Your Browser LeaksSchneier on Security·Sep 28, 14:51 UTC · Sep 28, 2021Policy & legal42
Silver Sparrow, a new malware infects Mac systems using Apple M1 chipSecurity Affairs·Feb 20, 14:09 UTC · Feb 20, 2021Malware142
Masslogger campaigns exfiltrates user credentialsCisco Talos·Feb 17, 13:00 UTC · Feb 17, 2021Threat actor57
Malicious NPM project steals browser info and Discord accountsSecurity Affairs·Nov 10, 15:13 UTC · Nov 10, 2020Data breach57
Prototype Pollution flaw discovered in all versions of Lodash LibrarySecurity Affairs·Jul 9, 17:50 UTC · Jul 9, 2019Exploit / PoCCVE-2019-1074460
PoC Released for Outlook Flaw that Microsoft Patched 6 Month After DiscoveryThe Hacker News·Jun 22, 16:59 UTC · Jun 22, 2019Exploit / PoCCVE-2019-110560
The JavaScript Supply Chain Paradox: SRI, CSP and Trust in Third Party LibrariesTroy Hunt·Feb 12, 07:59 UTC · Feb 12, 2018Malware42
North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer SecretsThe Hacker News·Jul 3, 16:07 UTC · Jul 3, 2026Data breach57
Ghostwriter Is Back, Using a Ukrainian Learning Platform as Bait to Hit Government TargetsSecurity Affairs·May 23, 09:39 UTC · May 23, 2026Data breach57
Ivanti warns customers of new EPM flaw enabling remote code executionSecurity Affairs·Dec 9, 22:11 UTC · Dec 9, 2025Vulnerability in the wildCVE-2025-10573CVE-2024-13159CVE-2024-13160+1 CVEs60
SideWinder APT Strikes Middle East and Africa With Stealthy MultiThe Hacker News·Oct 28, 03:55 UTC · Oct 28, 2025VulnerabilityCVE-2017-1188247
North Korean Hackers Use EtherHiding to Hide Malware Inside Blockchain Smart ContractsThe Hacker News·Oct 17, 04:33 UTC · Oct 17, 2025Malware42
18 Popular Code Packages Hacked, Rigged to Steal CryptoKrebs on Security·Sep 9, 02:21 UTC · Sep 9, 2025Data breach57
How to Avoid the Common Pitfalls While Browsing the WebRecorded Future·Jul 31, 00:00 UTC · Jul 31, 2025Data breach57
ClearFake Infects 9,300 Sites, Uses Fake reCAPTCHA and Turnstile to Spread InfoThe Hacker News·Mar 19, 10:59 UTC · Mar 19, 2025VulnerabilityCVE-2017-019947
China-Linked TAG-112 Targets Tibetan Media with Cobalt Strike Espionage CampaignThe Hacker News·Nov 22, 16:47 UTC · Nov 22, 2024Threat actor57
Security Experts Warn of Two Primary Client-Side Risks Associated with Data Exfiltration and LossThe Hacker News·Jul 19, 11:23 UTC · Jul 19, 2022Threat actor57
Iranian linked conglomerate MuddyWater comprised of regionally focused subgroupsCisco Talos·Mar 10, 13:02 UTC · Mar 10, 2022Ransomware57
DarkWatchman RAT uses Windows Registry fileless storage mechanismSecurity Affairs·Dec 20, 23:39 UTC · Dec 20, 2021Malware42
New Fileless Malware Uses Windows Registry as Storage to Evade DetectionThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Malware42
Hackers Increasingly Using HTML Smuggling in Malware and Phishing AttacksThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2021Malware42
Millions of sites could be hacked due to flaws in popular WordPress pluginsSecurity Affairs·Mar 19, 16:40 UTC · Mar 19, 2021Vulnerability42
Malicious npm packages spotted delivering njRAT TrojanSecurity Affairs·Dec 1, 21:07 UTC · Dec 1, 2020Malware42
Cisco Talos discloses technicals details of Chrome, Firefox flawsSecurity Affairs·Jul 5, 12:34 UTC · Jul 5, 2020VulnerabilityCVE-2020-6463CVE-2020-1241847
Magecart Hackers Infect 17,000 Sites Through Misconfigured Amazon S3 BucketsThe Hacker News·Jul 11, 07:34 UTC · Jul 11, 2019Malware42
Unpatched Prototype Pollution Flaw Affects All Versions of Popular Lodash LibraryThe Hacker News·Jul 9, 16:08 UTC · Jul 9, 2019VulnerabilityCVE-2019-1074447
Hackers infect e-commerce sites by compromising their advertising partnerThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2019Vulnerability42
NemucodAES ransomware & Kovter trojan bundled in the same campaignsSecurity Affairs·Oct 9, 10:00 UTC · Oct 9, 2017Ransomware57
ASLR Protection could be bypassed by visiting a website.Millions of devices at riskSecurity Affairs·Feb 17, 11:06 UTC · Feb 17, 2017Exploit / PoCCVE-2017-5925CVE-2017-5926CVE-2017-5927+1 CVEs60
Reminder: be careful opening invoices on the 21st MarchKaspersky Securelist·Mar 15, 08:37 UTC · Mar 15, 2013VulnerabilityCVE-2010-018847