U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches
The U.S. Department of the Treasury has announced new sanctions targeting Iranian cyber actors as part of Operation Economic Outcast, an economic…
The U.S. Department of the Treasury has announced new sanctions targeting Iranian cyber actors as part of Operation Economic Outcast, an economic…
A set of 40 malicious Mozilla Firefox extensions has been discovered masquerading as popular Web3 products like OKX, Rabby Wallet, and TronLink…
wincfg is a Go-based stealer payload used in the StubMaker campaign. It extracts credentials from Chromium-based browsers, collects cryptocurrency wallets and seed…
SafePal, a hardware wallet maker, has disclosed an authorization flaw in an order-tracking plug-in that exposed the personal information of approximately 39,798…
Cybersecurity researchers have uncovered a new macOS-oriented, Rust-based information stealer called AmnesiaStealer that hijacks Chromium web browsers to steal session data and…
Huntress researchers have uncovered a new ClickFix-style attack campaign targeting macOS users with a Go-based stealer malware capable of stealing cryptocurrency, browser…
Blockchain security firm Coinspect has identified a critical vulnerability in the popular JavaScript cryptography library CryptoJS, specifically in the CryptoJS.lib.WordArray.random() function, which…
A threat actor exploited the CryptoJS weak RNG to drain over $5.7 million from cryptocurrency wallets across multiple networks.
Attackers compromised a JavaScript file served by advertising technology company Adform, turning it into a browser-side tool that rewrites cryptocurrency wallet addresses.…
Threat actors with ties to North Korea have been attributed to a sophisticated macOS malvertising campaign that involves redirecting users to fake…