-
FBI agents arrested a Florida man accused of spreading Steam game malware that stole $220,000 in crypto, including $32,000 from a terminally ill cancer patient.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A sophisticated North Korean threat campaign dubbed “Contagious Interview” has resurfaced with new delivery techniques, leveraging weaponized SVG image files to deploy the OTTERCOOKIE malware while coinciding with a separate supply chain intrusion targ…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
An email that appears to contain a shipping document, payment request, or business proposal can infect a Windows…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
An active phishing campaign using a five-layer, fileless malware loader to evade Microsoft’s Antimalware Scan Interface (AMSI), static detection controls, and disk-based forensic analysis. The campaign delivers a Windows Script Host JScript payload ins…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
Kaspersky says OkoBot targets crypto users through fake software, stealing wallet files, seed phrases and passwords while recording activity inside wallet apps.
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
The China-linked Daxin backdoor has resurfaced in an active intrusion targeting a Taiwan-based subsidiary of a multinational high-tech manufacturer, exposing the enduring reach of an espionage operation first publicly detailed in 2022. Daxin’s return i…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A newly documented malware framework dubbed OkoBot is targeting cryptocurrency users with a multi-stage intrusion chain designed to capture Ledger and Trezor recovery phrases, browser credentials, wallet files, keystrokes, screenshots, and application …
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A previously undocumented Rust-based remote access trojan, dubbed LabubaRAT, which masquerades as legitimate NVIDIA software to establish persistent access on Windows systems. The malware was identified by the company’s Adversary Pursuit Group (APG) an…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
11 malicious NuGet packages masquerading as game cheats, automation bots, and management “panels” that deploy a Windows payload called pepesoft.exe. The packages were published as .NET command-line tools, enabling users to install them through the dotn…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶
-
A threat campaign discovered in mid-July 2026 abused the compromised Artlist subdomain new-blog. artlist[.]io to distribute a Remote Access Trojan through a fake CAPTCHA prompt. The operation combined stolen WordPress credentials, blockchain-based Ethe…
¶¶¶¶¶
¶¶¶¶¶
¶¶¶¶¶


