Hackers Found Using CrossC2 to Expand Cobalt Strike Beacon’s Reach to Linux and macOSThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Ransomware57
⚡ Weekly Recap: BadCam Attack, WinRAR 0-Day, EDR Killer, NVIDIA Flaws, Ransomware Attacks & MoreThe Hacker News·Aug 12, 04:40 UTC · Aug 12, 2025Ransomware in the wildCVE-2025-54948CVE-2025-54987CVE-2025-8088+30 CVEs60
Efimer Trojan delivered via email and hacked WordPress websitesKaspersky Securelist·Aug 8, 09:00 UTC · Aug 8, 2025Malware30
Storm-2603 Deploys DNS-Controlled Backdoor in Warlock and LockBit Ransomware AttacksThe Hacker News·Aug 6, 14:41 UTC · Aug 6, 2025RansomwareCVE-2025-49706CVE-2025-4970460
UNC2891 Breaches ATM Network via 4G Raspberry Pi, Tries CAKETAP Rootkit for FraudThe Hacker News·Jul 31, 15:37 UTC · Jul 31, 2025Malware42
Auto-Color Backdoor Malware Exploits SAP VulnerabilityInfosecurity Magazine·Jul 29, 15:10 UTC · Jul 29, 2025VulnerabilityCVE-2025-3132460
Cybercriminals Use Fake Apps to Steal Data and Blackmail Users Across Asia’s Mobile NetworksThe Hacker News·Jul 29, 11:10 UTC · Jul 29, 2025Ransomware45
⚡ Weekly Recap: Chrome 0-Day, Ivanti Exploits, MacOS Stealers, Crypto Heists and MoreThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2025Malware in the wildCVE-2025-32462CVE-2025-32463CVE-2025-20309+23 CVEs60
Dark Hotel Malware Campaign: New Networks UncoveredRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Malware30
Cyber Criminals Exploit Open-Source Tools to Compromise Financial Institutions Across AfricaThe Hacker News·Jun 26, 08:08 UTC · Jun 26, 2025Ransomware57
New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS AttacksThe Hacker News·Jun 21, 09:10 UTC · Jun 21, 2025Vulnerability in the wildCVE-2025-324860
Global law enforcement action in Asia nets large infrastructure seizure, 32 arrestsCyberScoop·Jun 11, 18:54 UTC · Jun 11, 2025Ransomware in the wild60
Golden Chickens Deploy TerraStealerV2 to Steal Browser Credentials and Crypto Wallet DataThe Hacker News·Jun 10, 16:25 UTC · Jun 10, 2025Malware42
⚡ THN Weekly Recap: Google Secrets Stolen, Windows Hack, New Crypto Scams and MoreThe Hacker News·Jun 10, 09:34 UTC · Jun 10, 2025Phishing & fraudCVE-2025-1094CVE-2025-0108CVE-2025-23359+31 CVEs60
Malicious PyPI, npm, and Ruby Packages Exposed in Ongoing OpenThe Hacker News·Jun 4, 10:11 UTC · Jun 4, 2025Vulnerability242
⚡ Weekly Recap: APT Intrusions, AI Malware, ZeroThe Hacker News·Jun 3, 04:04 UTC · Jun 3, 2025Malware in the wildCVE-2025-3935CVE-2025-47577CVE-2025-2760+14 CVEs60
Malware Analysis Reveals Sophisticated RAT With Corrupted HeadersInfosecurity Magazine·May 29, 14:00 UTC · May 29, 2025Malware30
⚡ Weekly Recap: APT Campaigns, Browser Hijacks, AI Malware, Cloud Breaches and Critical CVEsThe Hacker News·May 26, 13:00 UTC · May 26, 2025MalwareCVE-2025-4427CVE-2025-4428CVE-2025-34025+7 CVEs60
Chinese Hackers Exploit Ivanti EPMM Bugs in Global Enterprise Network AttacksThe Hacker News·May 22, 12:07 UTC · May 22, 2025Exploit / PoCCVE-2025-4427CVE-2025-4428CVE-2025-3132460
Ransomware Gangs Use Skitnet Malware for Stealthy Data Theft and Remote AccessThe Hacker News·May 19, 14:38 UTC · May 19, 2025Ransomware57
BianLian and RansomExx Exploit SAP NetWeaver Flaw to Deploy PipeMagic TrojanThe Hacker News·May 15, 00:00 UTC · May 15, 2025Malware in the wildCVE-2025-31324CVE-2025-29824CVE-2025-42999160
Earth Ammit Breached Drone Supply Chains via ERP in VENOM, TIDRONE CampaignsThe Hacker News·May 15, 00:00 UTC · May 15, 2025Data breach60
BREAKING: 7,000-Device Proxy Botnet Using IoT, EoL Systems Dismantled in U.S.The Hacker News·May 9, 16:59 UTC · May 9, 2025Malware30
Experts shared up-to-date C2 domains and other artifacts related to recent MintsLoader attacksSecurity Affairs·May 5, 11:24 UTC · May 5, 2025Malware30
MintsLoader Drops GhostWeaver via Phishing, ClickFix — Uses DGA, TLS for Stealth AttacksThe Hacker News·May 2, 08:57 UTC · May 2, 2025Malware30
Uyghur Diaspora Group Targeted with Remote Surveillance MalwareInfosecurity Magazine·Apr 28, 15:15 UTC · Apr 28, 2025Malware55
MintsLoader Malware Analysis: Multi-Stage Loader Used by TAGRecorded Future·Apr 20, 00:00 UTC · Apr 20, 2025Malware42
Node.js malvertising campaign targets crypto usersSecurity Affairs·Apr 17, 13:07 UTC · Apr 17, 2025Threat actor45
Chinese Android Phones Shipped with Fake WhatsApp, Telegram Apps Targeting Crypto UsersThe Hacker News·Apr 17, 11:00 UTC · Apr 17, 2025Vulnerability42
Chinese espionage group leans on openCyberScoop·Apr 15, 15:02 UTC · Apr 15, 2025Threat actor in the wild60
Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell ToolThe Hacker News·Apr 15, 00:00 UTC · Apr 15, 2025MalwareCVE-2024-8963CVE-2024-9380CVE-2024-8190+2 CVEs160
PJobRAT Malware Campaign Targeted Taiwanese Users via Fake Chat AppsThe Hacker News·Apr 8, 16:48 UTC · Apr 8, 2025Malware30
New Malware Loaders Use Call Stack Spoofing, GitHub C2, and .NET Reactor for StealthThe Hacker News·Apr 5, 08:10 UTC · Apr 5, 2025Malware142
PJobRAT Malware Targets Users in Taiwan via Fake AppsInfosecurity Magazine·Mar 27, 16:00 UTC · Mar 27, 2025Malware30
Microsoft Uncovers New XCSSET macOS Malware Variant with Advanced Obfuscation TacticsThe Hacker News·Mar 12, 06:55 UTC · Mar 12, 2025MalwareCVE-2021-3071360
Vo1d Botnet's Peak Surpasses 1.59M Infected Android TVs, Spanning 226 CountriesThe Hacker News·Mar 10, 04:01 UTC · Mar 10, 2025Malware42
New TgToxic Banking Trojan Variant Evolves with AntiThe Hacker News·Mar 1, 07:55 UTC · Mar 1, 2025Malware30
Microsoft Uncovers Sandworm Subgroup's Global Cyber Attacks Spanning 15+ CountriesThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2025Threat actorCVE-2024-1709CVE-2023-48788CVE-2021-34473+4 CVEs160