Malware Analysis

How Do ToxicPanda and GoldDigger Automate Mobile Fraud?

Hackers & Threats

How Do ToxicPanda and GoldDigger Automate Mobile Fraud?

Malicious operators are increasingly using legitimate cloud infrastructure like Amazon AWS buckets to host and distribute banking trojan payloads. This strategic pivot highlights a broader maturation within the cybercrime ecosystem, where the focus h

Hackers & Threats What Is Manic, the New Hybrid Android Banking Malware?

The emergence of the Manic malware family represents a sophisticated shift in mobile security risks by blending the intrusive capabilities of banking trojans with high-level spyware functionality. A single notification on a smartphone screen, appearing as a routine system update or a missed

What Is Manic, the New Hybrid Android Banking Malware?
Hackers & Threats MacSync Stealer Targets macOS Users via ClickFix Tactics

Using a combination of Base64 encoding and gunzip compression allows specialized stealers to mask their malicious activity from standard system monitors. This technical obfuscation marks the beginning of the MacSync Stealer infection chain, which has increasingly targeted macOS users who

MacSync Stealer Targets macOS Users via ClickFix Tactics
Hackers & Threats StopAndProtect Campaign Hijacks Thousands of WordPress Sites

Automated systems within the command-and-control infrastructure are currently processing and categorizing thousands of stolen archives, using specific naming conventions that link machine names to time-stamped files. This unprecedented level of organization underscores the sheer scale of the

StopAndProtect Campaign Hijacks Thousands of WordPress Sites
Hackers & Threats Is MessiahGPT the New Face of AI-Driven Cybercrime?

Defensive strategies are shifting toward monitoring behavioral patterns like unauthorized credential access and mass file modifications to counter AI-driven threats. The rise of MessiahGPT marks a pivotal moment in this shift, as the tool represents a specialized, adversarial large language model

Is MessiahGPT the New Face of AI-Driven Cybercrime?
Security Iranian Hackers Evolve Cavern C2 Using AI and Cloud Services

Digital battlefields have moved beyond the confines of isolated servers, as Iranian threat actors now weave their malicious code directly into the fabric of the global cloud infrastructure we rely on every day. This shift represents a fundamental transformation in how state-sponsored groups

Iranian Hackers Evolve Cavern C2 Using AI and Cloud Services
Hackers & Threats How Does AmnesiaStealer Gain Live Control of macOS Browsers?

Evidence from the malware’s command-and-control infrastructure suggests a Russian-speaking origin, as failed login attempts on the "Amnesia Panel" return localized error messages. This sophisticated threat, written in the memory-safe language Rust, represents a significant shift in the c

How Does AmnesiaStealer Gain Live Control of macOS Browsers?
Loading
subscription-bg
Subscribe to Our Weekly News Digest

Stay up-to-date with the latest security news delivered weekly to your inbox.

Invalid Email Address
subscription-bg
Subscribe to Our Weekly News Digest

Stay up-to-date with the latest security news delivered weekly to your inbox.

Invalid Email Address