Malware Analysis

Earth Sirrush Evolves Espionage Tactics Against Ukraine

Hackers & Threats

Earth Sirrush Evolves Espionage Tactics Against Ukraine

The use of steganography allows malicious traffic to pass through traditional network filters that typically only flag executable files while ignoring standard image transfers. Earth Sirrush, a sophisticated cyber-espionage actor often identified by

Hackers & Threats How Does ClingSTUN Malware Use STUN to Target Linux Systems?

Digital shadows are lengthening across the global infrastructure as sophisticated adversaries transform once-reliable Linux servers into silent, unwitting participants in malicious proxy networks. While IoT devices and enterprise servers often serve as the invisible backbone of modern connectivity,

How Does ClingSTUN Malware Use STUN to Target Linux Systems?
Hackers & Threats How Does ClickFix Hide Malware in Your Browser Cache?

Malik Haidar has spent his career at the front lines of cybersecurity, defending multinational corporations from the most elusive digital adversaries. With a deep background in threat intelligence and security analytics, he specializes in identifying the bridge between human fallibility and

How Does ClickFix Hide Malware in Your Browser Cache?
Hackers & Threats Self-Healing SC Malware Targets WordPress Ecosystem

Advanced persistent threats targeting the WordPress ecosystem have evolved to include capabilities for injecting JavaScript skimmers and executing arbitrary PHP code remotely. The current digital landscape is witnessing the rise of the "SC" malware, a sophisticated infection system that

Self-Healing SC Malware Targets WordPress Ecosystem
Hackers & Threats UAT-11587 Group Abuses Microsoft 365 in Antino Cyber-Espionage

Security researchers have identified a complex infection chain that utilizes spoofed Gmail attachment previews to trick high-value targets into executing malicious HTA and WSF files. This sophisticated operation is attributed to UAT-11587, a China-nexus cyber-espionage cluster that has

UAT-11587 Group Abuses Microsoft 365 in Antino Cyber-Espionage
Hackers & Threats Midnight Blizzard Targets Travelers via Hotel Wi-Fi Portals

Modern malware like ChocoShell utilizes browser debugging features to retrieve encryption keys and read session cookies in a plaintext format. This capability marks a terrifying advancement in the ongoing cyberespionage operation known as CaptiveCrunch, orchestrated by the state-sponsored group

Midnight Blizzard Targets Travelers via Hotel Wi-Fi Portals
Hackers & Threats How Does the ClickFix Campaign Infect Ukrainian Users?

By weaponizing legitimate web infrastructure, the UAC-0277 activity group has created a highly effective and distributed network for malware delivery. The current digital landscape in Ukraine faces a relentless assault from actors who leverage the inherent trust users place in familiar online

How Does the ClickFix Campaign Infect Ukrainian Users?
Loading
subscription-bg
Subscribe to Our Weekly News Digest

Stay up-to-date with the latest security news delivered weekly to your inbox.

Invalid Email Address
subscription-bg
Subscribe to Our Weekly News Digest

Stay up-to-date with the latest security news delivered weekly to your inbox.

Invalid Email Address