In a significant development in international cybercrime enforcement, South Korean authorities have successfully extradited a Chinese national suspected of orchestrating a sophisticated hacking operation that […]
Month: August 2025
Weaponized ScreenConnect RMM Tool Deceives Users into Installing Xworm RAT
In a sophisticated cyberattack uncovered by Trustwave’s SpiderLabs team, threat actors have exploited the legitimate remote management tool, ScreenConnect, to deploy the Xworm Remote Access […]
Cybercriminals Exploit Microsoft Teams by Impersonating IT Support to Gain Unauthorized Access
In a recent wave of cyberattacks, malicious actors have been exploiting Microsoft Teams to impersonate IT support personnel, thereby gaining unauthorized access to sensitive systems. […]
Escalating Cyber Threats Targeting Salesforce Environments: A Comprehensive Analysis
In recent years, Salesforce, a leading customer relationship management (CRM) platform, has become a prime target for cybercriminals. The platform’s extensive use across various industries […]
Silver Fox APT Exploits Vulnerable Drivers to Evade Security on Windows 10 and 11 Systems
In mid-2025, cybersecurity researchers identified a sophisticated campaign orchestrated by the Silver Fox Advanced Persistent Threat (APT) group. This state-sponsored entity has been exploiting a […]
Nx Build Platform Compromised: Credential-Stealing Malware Targets Millions of Developers
In a significant cybersecurity incident, the widely-used Nx build platform has been infiltrated by a sophisticated supply chain attack, compromising multiple package versions and leading […]
Emerging Mac Malware ‘JSCoreRunner’ Exploits Fake PDF Conversion Site to Deliver Malicious Payloads
A sophisticated new malware campaign targeting macOS users has been identified, leveraging a deceptive PDF conversion website to distribute a two-stage malicious payload. This malware, […]
TransUnion Data Breach Exposes Personal Information of Over 4.4 Million Consumers
TransUnion, a leading credit reporting agency, has reported a significant data breach compromising the personal information of more than 4.4 million U.S. consumers. The breach, […]
Critical XSS Vulnerability in Nagios XI’s Graph Explorer Patched in Latest Release
Nagios XI, a widely utilized network monitoring solution, has recently addressed a significant cross-site scripting (XSS) vulnerability within its Graph Explorer feature. This flaw, if […]
Critical SSRF Vulnerability in PhpSpreadsheet Library Exposes Servers to Malicious HTML Input
A significant Server-Side Request Forgery (SSRF) vulnerability has been identified in the widely utilized PhpSpreadsheet library, potentially allowing attackers to exploit internal network resources and […]